Vmware
Vmware Cloud Foundation: vulnerabilidades y CVE
Vmware Cloud Foundation tiene 139 vulnerabilidades publicadas, 6 de ellas en los últimos 12 meses. 17 son críticas y 19 figuran en el catálogo de explotación activa de CISA.
CVE139
Últimos 12 meses6
Críticas17
Explotadas activamente19
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-22719 | Alta (8.1) | 18% | ⚠ Explotación activa | 25 feb 2026 | VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this issue to execute arbitrary commands which may lead to remote code execution in VMware Aria Operations… |
| CVE-2024-37079 | Crítica (9.8) | 22% | ⚠ Explotación activa | 18 jun 2024 | vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially crafted… |
| CVE-2025-41244 | Alta (7.8) | 8.4% | ⚠ Explotación activa | 29 sept 2025 | VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by… |
| CVE-2025-22226 | Media (6) | 1.8% | ⚠ Explotación activa | 4 mar 2025 | VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit… |
| CVE-2025-22224 | Alta (8.2) | 1.6% | ⚠ Explotación activa | 4 mar 2025 | VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this… |
| CVE-2025-22225 | Alta (8.2) | 1.0% | ⚠ Explotación activa | 4 mar 2025 | VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox. |
| CVE-2024-38812 | Crítica (9.8) | 55% | ⚠ Explotación activa | 17 sept 2024 | The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially… |
| CVE-2024-38813 | Crítica (9.8) | 17% | ⚠ Explotación activa | 17 sept 2024 | The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network access to vCenter Server may trigger this vulnerability to escalate privileges to root by sending a specially crafted… |
| CVE-2024-37085 | Alta (7.2) | 27% | ⚠ Explotación activa | 25 jun 2024 | VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user… |
| CVE-2022-22948 | Media (6.5) | 13% | ⚠ Explotación activa | 29 mar 2022 | The vCenter Server contains an information disclosure vulnerability due to improper permission of files. A malicious actor with non-administrative access to the vCenter Server may exploit this issue to gain access to… |
| CVE-2022-22960 | Alta (7.8) | 36% | ⚠ Explotación activa | 13 abr 2022 | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a privilege escalation vulnerability due to improper permissions in support scripts. A malicious actor with local access can escalate… |
| CVE-2022-22954 | Crítica (9.8) | 100% | ⚠ Explotación activa | 11 abr 2022 | VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trigger a server-side template injection… |
| CVE-2021-21973 | Media (5.3) | 88% | ⚠ Explotación activa | 24 feb 2021 | The vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this… |
| CVE-2021-21975 | Alta (7.5) | 78% | ⚠ Explotación activa | 31 mar 2021 | Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request… |
| CVE-2021-21985 | Crítica (9.8) | 100% | ⚠ Explotación activa | 26 may 2021 | The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check plug-in which is enabled by default in vCenter Server. A malicious actor with… |
| CVE-2020-3992 | Crítica (9.8) | 83% | ⚠ Explotación activa | 20 oct 2020 | OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue. A malicious actor residing in the management network who… |
| CVE-2020-4006 | Crítica (9.1) | 17% | ⚠ Explotación activa | 23 nov 2020 | VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector address have a command injection vulnerability. |
| CVE-2021-21972 | Crítica (9.8) | 100% | ⚠ Explotación activa | 24 feb 2021 | The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted… |
| CVE-2021-22005 | Crítica (9.8) | 100% | ⚠ Explotación activa | 23 sept 2021 | The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to execute code on vCenter Server… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-41724 | Media (5.4) | 0.32% | — | 8 jun 2026 | VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with privileges to create policies, views or text-widgets may be able to inject scripts to perform… |
| CVE-2026-41723 | Alta (8) | 0.42% | — | 8 jun 2026 | VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with privileges to create policies, views or text-widgets may be able to inject scripts to perform… |
| CVE-2026-41722 | Media (5.4) | 0.32% | — | 8 jun 2026 | VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with privileges to create policies, views or text-widgets may be able to inject scripts to perform… |
| CVE-2026-22721 | Alta (7.2) | 0.71% | — | 25 feb 2026 | VMware Aria Operations contains a privilege escalation vulnerability. A malicious actor with privileges in vCenter to access Aria Operations may leverage this vulnerability to obtain administrative access in VMware Aria… |
| CVE-2026-22720 | Crítica (9) | 0.42% | — | 25 feb 2026 | VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with privileges to create custom benchmarks may be able to inject script to perform administrative actions in VMware Aria… |
| CVE-2026-22719 | Alta (8.1) | 18% | ⚠ Explotación activa | 25 feb 2026 | VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this issue to execute arbitrary commands which may lead to remote code execution in VMware Aria Operations… |
| CVE-2025-41252 | Alta (7.5) | 0.69% | — | 29 sept 2025 | Description: VMware NSX contains a username enumeration vulnerability. An unauthenticated malicious actor may exploit this to enumerate valid usernames, potentially leading to unauthorized access attempts. Impact:… |
| CVE-2025-41251 | Alta (8.1) | 0.80% | — | 29 sept 2025 | VMware NSX contains a weak password recovery mechanism vulnerability. An unauthenticated malicious actor may exploit this to enumerate valid usernames, potentially enabling brute-force attacks. Impact: Username… |
| CVE-2025-41244 | Alta (7.8) | 8.4% | ⚠ Explotación activa | 29 sept 2025 | VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by… |
| CVE-2025-22245 | Media (5.9) | 0.26% | — | 4 jun 2025 | VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the router port due to improper input validation. |
| CVE-2025-22244 | Media (6.9) | 0.31% | — | 4 jun 2025 | VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the gateway firewall due to improper input validation. |
| CVE-2025-22243 | Alta (7.5) | 0.34% | — | 4 jun 2025 | VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation. |
| CVE-2025-41231 | Alta (7.3) | 0.17% | — | 20 may 2025 | VMware Cloud Foundation contains a missing authorisation vulnerability. A malicious actor with access to VMware Cloud Foundation appliance may be able to perform certain unauthorised actions and access limited sensitive… |
| CVE-2025-41230 | Alta (7.5) | 0.43% | — | 20 may 2025 | VMware Cloud Foundation contains an information disclosure vulnerability. A malicious actor with network access to port 443 on VMware Cloud Foundation may exploit this issue to gain access to sensitive information. |
| CVE-2025-41229 | Alta (8.2) | 0.67% | — | 20 may 2025 | VMware Cloud Foundation contains a directory traversal vulnerability. A malicious actor with network access to port 443 on VMware Cloud Foundation may exploit this issue to access certain internal services. |
| CVE-2025-22249 | Alta (8.2) | 0.34% | — | 13 may 2025 | VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious actor may exploit this issue to steal the access token of a logged in user of VMware Aria automation appliance by… |
| CVE-2025-22226 | Media (6) | 1.8% | ⚠ Explotación activa | 4 mar 2025 | VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit… |
| CVE-2025-22225 | Alta (8.2) | 1.0% | ⚠ Explotación activa | 4 mar 2025 | VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox. |
| CVE-2025-22224 | Alta (8.2) | 1.6% | ⚠ Explotación activa | 4 mar 2025 | VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this… |
| CVE-2025-22222 | Media (6.5) | 0.56% | — | 30 ene 2025 | VMware Aria Operations contains an information disclosure vulnerability. A malicious user with non-administrative privileges may exploit this vulnerability to retrieve credentials for an outbound plugin if a valid… |
| CVE-2025-22221 | Media (4.8) | 0.40% | — | 30 ene 2025 | VMware Aria Operation for Logs contains a stored cross-site scripting vulnerability. A malicious actor with admin privileges to VMware Aria Operations for Logs may be able to inject a malicious script that could be… |
| CVE-2025-22220 | Media (5.4) | 0.33% | — | 30 ene 2025 | VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor with non-administrative privileges and network access to Aria Operations for Logs API may be able to perform certain… |
| CVE-2025-22219 | Crítica (9) | 0.67% | — | 30 ene 2025 | VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious actor with non-administrative privileges may be able to inject a malicious script that (can perform stored cross-site… |
| CVE-2025-22218 | Alta (7.7) | 0.68% | — | 30 ene 2025 | VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated with VMware Aria… |
| CVE-2024-38834 | Media (4.8) | 0.31% | — | 26 nov 2024 | VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to cloud provider might be able to inject malicious script leading to stored cross-site scripting in the… |
| CVE-2024-38833 | Media (5.4) | 0.40% | — | 26 nov 2024 | VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to email templates might inject malicious script leading to stored cross-site scripting in the product… |
| CVE-2024-38832 | Media (6.4) | 0.44% | — | 26 nov 2024 | VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to views may be able to inject malicious script leading to stored cross-site scripting in the product… |
| CVE-2024-38831 | Alta (7.8) | 0.29% | — | 26 nov 2024 | VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges can insert malicious commands into the properties file to escalate privileges to a root… |
| CVE-2024-38830 | Alta (7.8) | 0.18% | — | 26 nov 2024 | VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges may trigger this vulnerability to escalate privileges to root user on the appliance… |
| CVE-2024-38813 | Crítica (9.8) | 17% | ⚠ Explotación activa | 17 sept 2024 | The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network access to vCenter Server may trigger this vulnerability to escalate privileges to root by sending a specially crafted… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.