VMware vCenter Server是美国威睿(VMware)公司的一套服务器和虚拟化管理软件。该软件提供了一个用于管理VMware vSphere环境的集中式平台,可自动实施和交付虚拟基础架构。 VMvare vCenter Server 8.0 U2d之前、7.0 U3r之前版本存在安全漏洞,该漏洞源于sudo 配置错误,具有非管理权限的经过身份验证的本地用户可以利用这些问题将权限提升到root 权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | VMware vCenter Server | 8.0 ~ 8.0 U2d | - |
|
| - | VMware Cloud Foundation | 5.x | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2024-37081: Multiple Local Privilege Escalation in VMware vCenter Server | https://github.com/mbadanoiu/CVE-2024-37081 | POC Details |
| 2 | None | https://github.com/Mr-r00t11/CVE-2024-37081 | POC Details |
| 3 | None | https://github.com/CERTologists/-CVE-2024-37081-POC | POC Details |
| 4 | None | https://github.com/CERTologists/Modified-CVE-2024-37081-POC | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-37080 | 9.8 CRITICAL | VMware vCenter Server 安全漏洞 |
| CVE-2024-37079 | 9.8 CRITICAL | VMware vCenter Server 安全漏洞 |
| CVE-2024-6128 | 5.3 MEDIUM | spa-cartcms Checkout Page checkout behavioral workflow |
| CVE-2024-6129 | 3.7 LOW | spa-cartcms Username login observable behavioral discrepancy |
| CVE-2024-22002 | CORSAIR iCUE 安全漏洞 | |
| CVE-2024-38348 | CodeProjects Health Care hospital Management System SQL注入漏洞 | |
| CVE-2024-38347 | CodeProjects Health Care hospital Management System SQL注入漏洞 | |
| CVE-2024-37821 | Dolibarr ERP/CRM 安全漏洞 | |
| CVE-2024-37802 | CodeProjects Health Care hospital Management System SQL注入漏洞 | |
| CVE-2024-37803 | Health Care hospital Management System SQL注入漏洞 | |
| CVE-2024-37791 | DuxCMS SQL注入漏洞 | |
| CVE-2024-37799 | CodeProjects Restaurant Reservation System SQL注入漏洞 | |
| CVE-2024-37800 | CodeProjects Restaurant Reservation System 跨站脚本漏洞 |
No comments yet