#vCenter
Broadcom warned today that attackers are now exploiting two #VMware vCenter Server vulnerabilities, one of which is a critical remote code execution flaw. #CyberSecurity #cyberattacks www.bleepingcomputer.com/news/securit...
Critical RCE bug in VMware vCenter Server now exploited in attacks
​Broadcom warned today that attackers are now exploiting two VMware vCenter Server vulnerabilities, one of which is a critical remote code execution flaw.
www.bleepingcomputer.com
November 18, 2024 at 9:20 PM
vCenter pre-auth RCE: CVE-2026-59309/59310
vCenter pre-auth RCE: CVE-2026-59309/59310 | Mobeta
CVE-2026-59309 & CVE-2026-59310: patch-diffing VMware vCenter reveals two pre-auth 9.8 bugs - an auth bypass and a syslog path traversal to RCE.
mobeta.fr
September 22, 2026 at 8:13 AM
vCenter 9.1.0.0300 Upgrade Failed? Time to Look Inside VCDB

You start a vCenter upgrade, watch the progress, and hope this will be one of those maintenance windows where everything finishes on time. Then the database upgrade fails. That is what I ran into while upgrading VMware vCenter Server to…
vCenter 9.1.0.0300 Upgrade Failed? Time to Look Inside VCDB
You start a vCenter upgrade, watch the progress, and hope this will be one of those maintenance windows where everything finishes on time. Then the database upgrade fails. That is what I ran into while upgrading VMware vCenter Server to 9.1.0.0300. The blocker was an orphaned record in the vCenter database, sitting right where the upgrade needed to enforce a foreign key relationship.
angrysysops.com
September 21, 2026 at 5:18 PM
Critical 9.8-rated VMware vCenter RCE bug exploited after patch fumble
Critical 9.8-rated VMware vCenter RCE bug exploited after patch fumble
If you didn't fix this a month ago, your to-do list probably needs a reshuffle Two VMware vCenter server bugs, including a critical heap-overflow vulnerability that leads to remote code execution (RCE), have been exploited in attacks after Broadcom’s…
dlvr.it
November 18, 2024 at 10:38 PM
vCenter pre-auth RCE: CVE-2026-59309/59310 - patch-diffing to RCE
vCenter pre-auth RCE: CVE-2026-59309/59310 - patch-diffing to RCE
mobeta.fr
September 26, 2026 at 8:09 AM
VMware vCenter Converter Standalone 6.6

VMoreCloud Learn | Build | Share ⌂ Home › Software › Virtualization › VMware vCenter Converter VMware vCenterConverter Standalone6.6.0 P2V • V2VMigration VMware Migration Utility VMware vCenter Converter Standalone 6.6.0 A practical migration utility for…
VMware vCenter Converter Standalone 6.6
VMoreCloud Learn | Build | Share ⌂ Home › Software › Virtualization › VMware vCenter Converter VMware vCenterConverter Standalone6.6.0 P2V • V2VMigration VMware Migration Utility VMware vCenter Converter Standalone 6.6.0 A practical migration utility for supported physical-to-virtual and virtual-to-virtual conversion workflows. Use it as part of a structured VMware migration plan for server consolidation, hardware refreshes, data-center modernization and supported hypervisor migrations.
vmorecloud.com
September 25, 2026 at 7:44 PM
[🆕] - vCenter Server Identity Federation with Authentik Identity Provider williamlam.com/2025/01/vcen...

👆Was fun to learn & nice way to play w/Identity Federation w/vCenter ... may also have future implications for self-hosted External IdP (besides the officially supported ones)
January 13, 2025 at 5:47 PM
VMware vCenter is a juicy target for crims because it is the tool admins use to manage fleets of virtual machines — and some orgs operate thousands of them — so all manner of miscreants therefore love this type of security hole.
Critical 9.8-rated VMware vCenter RCE bug under exploit
If you didn't fix this a month ago, your to-do list probably needs a reshuffle
www.theregister.com
November 18, 2024 at 11:18 PM
U.S. CISA adds Apple macOS, Microsoft SharePoint, Broadcom VMware vCenter, and Microsoft IKE flaws to its Known Exploited Vulnerabilities catalog
U.S. CISA adds Apple macOS, Microsoft SharePoint, Broadcom VMware vCenter, and Microsoft IKE flaws to its Known Exploited Vulnerabilities catalog
U.S. CISA adds Apple macOS, Microsoft SharePoint, VMware vCenter, and Microsoft IKE flaws to its Known Exploited Vulnerabilities catalog.
securityaffairs.com
August 19, 2026 at 7:54 AM
I just posted a blog on how to access vCenter Inventory using async Python. Enjoy!

#vCenter #Inventory #cmdb #python #aiohttp

blogs.vmware.com/code/2023/12...
December 28, 2023 at 1:11 PM
[🆕] - Quick Tip - Which vCenter Server Key Provider (KMS) is a VM using? williamlam.com/2025/03/quic...
March 27, 2025 at 4:11 PM
CISA Warns of VMware vCenter Path Traversal Vulnerability Actively Exploited in Attacks
CISA Warns of VMware vCenter Path Traversal Vulnerability Actively Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency has added a critical Broadcom VMware vCenter vulnerability, tracked as CVE-2026-59310 , to its Known Exploited Vulnerabilities catalog after evidence showed active exploitation in attacks. The flaw affects VMware vCenter and is classified as a path traversal vulnerability under CWE-22. According to CISA, an attacker with network access to a vulnerable vCenter instance could exploit the issue to execute arbitrary code. This poses a serious risk to organizations running VMware virtual infrastructure, particularly when vCenter servers are exposed to untrusted networks or accessible via compromised internal accounts. Path traversal flaws occur when an application fails to validate user-provided file paths properly. An attacker may abuse specially crafted path values to access files or directories outside the intended location. VMware vCenter Path Traversal Vulnerability Exploited In this case, successful exploitation could allow an intruder to bypass normal access controls and gain code execution on the vCenter environment. VMware vCenter is a high-value target because it centrally manages virtual machines, hosts, datastores, networking, and access controls. Attackers who gain control of a vCenter server may be able to disrupt many workloads, change virtual machine settings, deploy malicious virtual machines, steal credentials, or turn off recovery operations. CISA added CVE-2026-59310 to the KEV catalog on August 18, 2026. Federal civilian executive branch agencies must apply required mitigations by August 21, 2026, under Binding Operational Directive 26-04. The short remediation window reflects the risk posed by the exploitation of vulnerable infrastructure management systems. The agency said organizations should apply mitigations in line with Broadcom’s vendor instructions and evaluate every affected asset for internet exposure. Organizations must also follow CISA’s BOD 26-04 guidance for prioritizing security updates based on risk, as well as its forensics triage requirements. Where mitigations are not available, CISA advises affected stakeholders to discontinue use of the vulnerable product. CISA has not indicated whether CVE-2026-59310 has been used in ransomware operations. However, VMware management platforms have repeatedly been targeted in enterprise intrusions because they offer attackers broad control over virtualized environments. Security teams should immediately identify all vCenter deployments , confirm their software versions, and determine whether exposed systems are reachable from the internet or from less-trusted internal network segments. Administrators should restrict management access to approved networks, enforce multi-factor authentication, review privileged vCenter accounts, and inspect logs for suspicious authentication events or abnormal administrative activity. Organizations should also preserve relevant vCenter, hypervisor, identity, and network logs before patching if compromise is suspected. Rapid containment and forensic review are important because a successful attack against a virtualization management platform can have consequences across the entire data center.  Strengthen Your SOC by Accelerating Threat Detection & Rapid Investigations. ->  Integrate ANY.RUN With Your SOC  Now . The post CISA Warns of VMware vCenter Path Traversal Vulnerability Actively Exploited in Attacks appeared first on Cyber Security News .
cybersecuritynews.com
August 19, 2026 at 9:20 AM
Die IT-Sicherheitsbehörde CISA warnt aktuell vor Angriffen auf Microsoft IKE, SharePoint, VMware vCenter und macOS. #Security
Warnung vor Angriffen auf Microsoft IKE, SharePoint, VMware vCenter und macOS
Die IT-Sicherheitsbehörde CISA warnt aktuell vor Angriffen auf Microsoft IKE, SharePoint, VMware vCenter und macOS.
www.heise.de
August 19, 2026 at 6:08 AM
Who has two thumbs and is fixing vCenter issues on the weekend? 👍👍
December 28, 2024 at 3:57 PM
VMware Discloses Exploitation of Hard-to-Fix vCenter Server Flaw
VMware Discloses Exploitation of Hard-to-Fix vCenter Server Flaw
The saga of VMWare’s critical CVE-2024-38812 vCenter Server bug has reached the “exploitation detected” stage.
buff.ly
November 18, 2024 at 8:12 PM
I am dead that perfomrna epf vcenter mass
June 21, 2026 at 9:15 PM
Happy Friday!

Just logging into vCenter Server or VMware Cloud Foundation (VCF) using Apple Face ID ... nice not having to type a password 😅

#FridayLabtime
January 24, 2025 at 11:19 PM
Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
CISA adds four critical flaws to KEV after active exploitation, with FCEB agencies ordered to patch by August 21, 2026
thehackernews.com
August 19, 2026 at 11:38 AM
Patch or die: VMware vCenter Server bug fixed in 2024 under attack today
Patch or die: VMware vCenter Server bug fixed in 2024 under attack today
If you skipped it back then, now’s a very good time You've got to keep your software updated. Some unknown miscreants are exploiting a critical VMware vCenter Server bug more than a year after Broadcom patched the flaw.…
dlvr.it
January 23, 2026 at 10:07 PM
Critical VMware vCenter Vulnerability (CVE-2024-38812)
A high-severity vulnerability (CVSS 9.8) in VMware vCenter, CVE-2024-38812, could allow remote code execution through crafted network packets.

thehackernews.com/2024/09/patc...

Ih, rapaz.

#bolhasec
Patch Issued for Critical VMware vCenter Flaw Allowing Remote Code Execution
Broadcom patches critical VMware vCenter Server vulnerability, CVE-2024-38812, preventing remote code execution. Update now.
thehackernews.com
September 18, 2024 at 1:12 PM
Critical RCE bug in VMware vCenter Server now exploited in attacks
Critical RCE bug in VMware vCenter Server now exploited in attacks
​Broadcom warned today that attackers are now exploiting two VMware vCenter Server vulnerabilities, one of which is a critical remote code execution flaw.
www.bleepingcomputer.com
November 18, 2024 at 7:03 PM
Configurar reenvío de log a syslog en VMware vCenter
proyectoa.com/configurar-r...

Cómo configurar un clúster de virtualización VMware vCenter para reenviar los log a un servidor de syslog externo.

#syslog #vmware #esx #vcenter #log #reenvío #esxi #fortianalyzer
Configurar reenvío de log a syslog en VMware vCenter » Proyecto A
Cómo configurar un clúster de virtualización VMware vCenter y sus respectivos hosts hipervisores ESXi para reenviar los log a un servidor de syslog externo. Requisitos para enviar los logs de VMware v...
proyectoa.com
December 11, 2025 at 9:27 PM
Proxmox Server Solutions announced #Proxmox Datacenter Manager last week. #PDM is a centralized management plane for #PVE, and it's giving #vCenter vibes! We dig into the alpha release, walk you through installation, setup, and running it in an LXC container! Video Here: youtu.be/rsguS0hw1PI
Proxmox just got a vCenter Alternative?! - Proxmox Datacenter Manager!
YouTube video by 2GuysTek
youtu.be
December 27, 2024 at 3:03 AM
A recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access.
Critical VMware vCenter RCE flaw exploited for reverse SSH access
A recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access.
www.bleepingcomputer.com
August 13, 2026 at 4:40 PM