"Critical VMware Bugs Open Swaths of VMs to RCE, Data Theft"

Broadcom has addressed three VMware vCenter vulnerabilities, two of which are critical and enable Remote Code Execution (RCE). Hackers continue to target Virtual Machines (VMs) due to their rich repositories of sensitive data and applications. VMware vCenter is the central management console for VMware virtual environments, viewing and managing VMs, multiple ESXi hosts, and all dependent components. Heap overflow vulnerabilities were found in vCenter's Distributed Computing Environment/Remote Procedure Call (DCERPC) implementation. This article continues to discuss the potential exploitation and impact of the critical VMware bugs.

Dark Reading reports "Critical VMware Bugs Open Swaths of VMs to RCE, Data Theft"

Submitted by grigby1
 

Submitted by grigby1 CPVI on