CVE-2024-22274
HIGH 7.2EPSS 2.5%
The vCenter Server contains an authenticated remote code execution vulnerability. A malicious actor with administrative privileges on the vCenter appliance shell may exploit this issue to run arbitrary commands on the underlying operating system.
- CVSS v3.1
- 7.2 HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H - EPSS
- 2.51% chance of exploitation in the next 30 days, 84th percentile
- Published
- 2024-05-21
- Updated
- 2024-08-01
Proof-of-concept exploits (4)
- Mustafa1986/CVE-2024-22274-RCE0★ · 2024-07-18
- l0n3m4n/CVE-2024-22274-RCE47★ · 2024-07-16
- mbadanoiu/CVE-2024-2227439★ · 2024-07-06
- ninhpn1337/CVE-2024-222740★ · 2024-07-11