Product of VMware

vCenter Server

As of , 9 VMware vCenter Server vulnerabilities are on CISA's list of exploited vulnerabilities, 3 of them used in ransomware campaigns; 0 were added in 2026. Patch first: CVE-2020-3952.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2020-3952Information DisclosureVMware vCenter ServerPatch this weekMetasploit module; EPSS 0.900.90
2CVE-2021-21972Remote Code ExecutionVMware vCenter ServerPatch this weekRansomware use; Metasploit module; EPSS 0.990.99
3CVE-2021-21985Improper Input ValidationVMware vCenter ServerPatch this weekRansomware use; Metasploit module; EPSS 0.990.99
4CVE-2021-22005File UploadVMware vCenter ServerPatch this weekRansomware use; Metasploit module; EPSS 0.990.99
5CVE-2022-22948Incorrect Default File PermissionsVMware vCenter ServerPatch this weekMetasploit module0.13
6CVE-2023-34048Out-of-Bounds WriteVMware vCenter ServerPatch this weekEPSS 0.990.99
7CVE-2024-38812Heap-Based Buffer OverflowVMware vCenter ServerPatch this weekEPSS 0.550.55
8CVE-2021-22017Improper Access ControlVMware vCenter ServerPatch soon0.49
9CVE-2024-38813Privilege EscalationVMware vCenter ServerPatch soon0.17

Added each year

12342021: 4420212022: 1120222023: nonenone20232024: 4420242025: nonenone20252026: nonenone2026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20214
20221
2023none
20244
2025none
2026none

Used in ransomware