Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2022-31680

The vCenter Server contains an unsafe deserialisation vulnerability in the PSC (Platform services controller). A malicious actor with admin access on vCenter server may exploit this issue to execute arbitrary code on the underlying operating system that hosts the vCenter Server.

  • Published: Oct 7, 2022
  • Updated: Apr 14, 2023
  • CVE: CVE-2022-31680
  • Severity: Critical
  • Exploit:

CVSS v3:

  • Severity: Critical
  • Score: 9.1
  • AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Software From Fixed in
vmware / vcenter_server 6.5-d 6.5-d.x
vmware / vcenter_server 6.5-c 6.5-c.x
vmware / vcenter_server 6.5-b 6.5-b.x
vmware / vcenter_server 6.5-a 6.5-a.x
vmware / vcenter_server 6.5 6.5.x
vmware / vcenter_server 6.5-update3n 6.5-update3n.x
vmware / vcenter_server 6.5-update1 6.5-update1.x
vmware / vcenter_server 6.5-update1c 6.5-update1c.x
vmware / vcenter_server 6.5-update1b 6.5-update1b.x
vmware / vcenter_server 6.5-update3 6.5-update3.x
vmware / vcenter_server 6.5-update3d 6.5-update3d.x
vmware / vcenter_server 6.5-update3k 6.5-update3k.x
vmware / vcenter_server 6.5-update3f 6.5-update3f.x
vmware / vcenter_server 6.5-update1d 6.5-update1d.x
vmware / vcenter_server 6.5-update1e 6.5-update1e.x
vmware / vcenter_server 6.5-update1g 6.5-update1g.x
vmware / vcenter_server 6.5-update2 6.5-update2.x
vmware / vcenter_server 6.5-update2b 6.5-update2b.x
vmware / vcenter_server 6.5-update2c 6.5-update2c.x
vmware / vcenter_server 6.5-update2d 6.5-update2d.x
vmware / vcenter_server 6.5-update2g 6.5-update2g.x
vmware / vcenter_server 6.5-update3p 6.5-update3p.x
vmware / vcenter_server 6.5-update3q 6.5-update3q.x
vmware / vcenter_server 6.5-update3r 6.5-update3r.x
vmware / vcenter_server 6.5-update3s 6.5-update3s.x
vmware / vcenter_server 6.5-update3t 6.5-update3t.x
vmware / vcenter_server 6.5-update3u 6.5-update3u.x
vmware / vcenter_server - 6.5