VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploit this issue to bypass authentication and gain unauthorized access to the system.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38017 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
History
No history.
Information
Published : 2026-07-30 13:16
Updated : 2026-08-25 18:12
NVD link : CVE-2026-59309
Mitre link : CVE-2026-59309
CVE.ORG link : CVE-2026-59309
JSON object : View
Products Affected
vmware
- vsphere_foundation
- telco_cloud_platform
- cloud_foundation
- telco_cloud_infrastructure
- vcenter_server
CWE
CWE-303
Incorrect Implementation of Authentication Algorithm
