// For flags

CVE-2023-34048

VMware vCenter Server Out-of-Bounds Write Vulnerability

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

Yes
*KEV

Decision

Act
*SSVC
Descriptions

vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bounds write potentially leading to remote code execution.

vCenter Server contiene una vulnerabilidad de escritura fuera de los límites en la implementación del protocolo DCERPC. Un actor malintencionado con acceso a la red de vCenter Server puede desencadenar una escritura fuera de los límites que podría conducir a la ejecución remota de código.

This vulnerability allows remote attackers to execute arbitrary code on affected installations of VMware vCenter Server Appliance. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the implementation of DCE/RPC protocol. The issue results from the lack of proper validation of user-supplied data, which can result in a write before the start of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of root.

VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol that allows an attacker to conduct remote code execution.

*Credits: Grigory Dorodnov of Trend Micro Security Research
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:Act
Exploitation
Active
Automatable
No
Tech. Impact
Total
* Organization's Worst-case Scenario
Timeline
  • 2023-05-25 CVE Reserved
  • 2023-10-25 CVE Published
  • 2024-01-22 Exploited in Wild
  • 2024-02-12 KEV Due Date
  • 2024-08-19 CVE Updated
  • 2024-10-31 EPSS Updated
  • ---------- First Exploit
CWE
  • CWE-787: Out-of-bounds Write
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
>= 4.0 <= 5.5
Search vendor "Vmware" for product "Vcenter Server" and version " >= 4.0 <= 5.5"
-
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
-
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
a
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
b
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
c
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
d
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update1
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update1a
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update1c
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update1d
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update2
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update2a
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update2b
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update2c
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update2d
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3a
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3c
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3d
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3e
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3f
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3g
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3h
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3i
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3j
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3k
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3l
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3m
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
7.0
Search vendor "Vmware" for product "Vcenter Server" and version "7.0"
update3n
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
-
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
a
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
b
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
c
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
update1
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
update1a
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
update1b
Affected
Vmware
Search vendor "Vmware"
Vcenter Server
Search vendor "Vmware" for product "Vcenter Server"
8.0
Search vendor "Vmware" for product "Vcenter Server" and version "8.0"
update1c
Affected