Security Advisory

CVE-2025-41225

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-20 14:24:17
Last updated 2025-06-24 07:11:20
Assigner vmware
State PUBLISHED

Description

The vCenter Server contains an authenticated command-execution vulnerability. A malicious actor with privileges to create or modify alarms and run script action may exploit this issue to run arbitrary commands on the vCenter Server.