CVE-2023-34048

Published Oct 25, 2023

Last updated 7 months ago

Exploit knownCVSS critical 9.8
web application
Cloud
Port (135)

Overview

Description
vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bounds write potentially leading to remote code execution.
Source
security@vmware.com
NVD status
Analyzed
Products
vcenter_server

Risk scores

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Known exploits

Data from CISA

Vulnerability name
VMware vCenter Server Out-of-Bounds Write Vulnerability
Exploit added on
Jan 22, 2024
Exploit action due
Feb 12, 2024
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weaknesses

nvd@nist.gov
CWE-787
134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-787

Social media

Hype score
Not currently trending
  1. 1/ VMware Aria Operations exploit in the wild. CVE-2023-34048 is a command injection flaw. Attackers are gaining access to cloud environments.

    @projectzerosum

    5 Mar 2026

    55 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  2. 🚨 CVE-2023-34048 : CRITICAL VULNERABILITY ALERT 🚨 @VMware An unauthenticated Remote Code Execution (RCE) vulnerability has been confirmed in VMware vCenter Server, affecting virtualized infrastructures globally. The Risk: Severity: 9.8/10 (Critical) Impact: Unauthentic

    @OstorlabSec

    13 Jan 2026

    61 Impressions

    2 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2023-34048 - critical 🚨 VMware vCenter Server - Out-of-Bounds Write > vCenter Server contains an out-of-bounds write caused by a vulnerability in the DCERP... 👾 https://t.co/oyVQKFW8Yn @pdnuclei #NucleiTemplates #cve

    @pdnuclei_bot

    29 Oct 2025

    167 Impressions

    1 Retweet

    0 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  4. Actively exploited CVE : CVE-2023-34048

    @transilienceai

    2 Aug 2025

    22 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  5. به تازگی گروه هکری UNC3886 اقدام‌ به اکسپلویت کردن آسیب پذیری هایی با کدهای شناسایی CVE-2023-34048 و CVE-2022-41328 و CVE-2023-20867 و CVE-2025-21590 در شبکه ها نموده اند. حتما بررسی کنی

    @AmirHossein_sec

    31 Jul 2025

    43 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 UNC3886 APT exploits VMware flaws for stealthy access. RCE (CVE-2023-34048) + Auth Bypass (CVE-2023-20867). Targets hypervisors → undetected persistence. they’re rewriting how espionage works #CVE2023 #APT #UNC3886 #VMware #CyberSecurity #Infosec #RedTeam #BlueTeam #Th

    @mdmudassir9

    28 Jul 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. به تازگی هکرها با استفاده از آسیب پذیری هایی با کدهای شناسایی CVE-2023-34048 مربوط به VCenter و CVE-2023-20867 مربوط به VMware tools به سیستم‌های شبکه دسترسی می‌گیرند. برای پیش

    @AmirHossein_sec

    27 Jul 2025

    75 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Fire Ant (probablement lié à #UNC3886) exploite plusieurs failles #VMware, comme CVE-2023-34048 et CVE-2023-20867, pour infiltrer les hôtes vCenter et ESXi, extraire des identifiants, déployer des backdoors, contourner la segmentation et contrôler les VMs https://t.co/mv0gDU

    @cert_ist

    25 Jul 2025

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. 2025年初頭から活動が確認されている「Fire Ant」と呼ばれる高度なスパイ活動グループが、VMware仮想化基盤を標的に攻撃を展開している。 Fire Antは、vCenter ServerのCVE-2023-34048やVMware

    @yousukezan

    25 Jul 2025

    797 Impressions

    0 Retweets

    6 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

Configurations