


Perceptive Security
SOC/SIEM Consultancy

Broadcom VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. This could allow a malicious actor wi…
Published:
23 January 2026 at 00:00:00
Alert date:
23 January 2026 at 18:06:58
Source:
cisa.gov
Cloud & Virtualization, Enterprise Applications
Broadcom VMware vCenter Server contains a critical out-of-bounds write vulnerability in the DCERPC protocol implementation. The vulnerability allows malicious actors with network access to send specially crafted packets to vCenter Server. This could potentially lead to remote code execution on the affected system. The vulnerability affects the core virtualization management platform used by many organizations. Network-based exploitation makes this a significant threat to enterprise infrastructure.
Technical details
Mitigation steps:
Affected products:
Broadcom VMware vCenter Server
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2024-37079
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24453
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
