{"id":"CVE-2026-59310","title":"vCenter directory-traversal vulnerability","summary":"VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.","severity":"critical","cvss":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cvssSource":"cna","cwe":["CWE-22"],"vendor":"VMware","product":"Cloud Foundation","affected":["cloud_foundation 9.1.x.x","cloud_foundation 9.0.x.x","cloud_foundation 5.x","vsphere_foundation 9.1.x.x","vsphere_foundation 9.0.x.x","vCenter >= 9.1.x.x < 9.1.0.0300","vCenter >= 9.0.x.x < 9.0.2.0100","vCenter >= 8.0 < 8.0 U3k","telco_cloud_infrastructure 3.0","telco_cloud_platform 5.1.x","telco_cloud_platform 5.0.x","telco_cloud_platform 4.x","telco_cloud_platform 3.0"],"ssvc":{"exploitation":"active","automatable":"yes","technicalImpact":"total","timestamp":"2026-07-29T00:00:00+00:00"},"exploited":true,"exploitAvailable":true,"published":"2026-07-30","updated":"2026-09-12","sourceUpdated":"2026-09-12T03:55:18.047Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-59310","references":[{"url":"https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38017"}],"tags":["cve.org","in-the-wild","exploit-available","kev"],"epss":0.50377,"epssPercentile":0.98892,"kev":true,"kevDateAdded":"2026-08-18","kevDueDate":"2026-08-21","kevRansomware":true,"exploits":{"github":2,"githubRepos":["https://github.com/HORKimhab/CVE-2026-59310","https://github.com/BiuTrap/CVE-2026-59310"],"checkedAt":"2026-09-21T15:29:49.913Z"},"ingestedAt":"2026-09-14T15:23:07.483Z","slug":"CVE-2026-59310","body":"## Overview\n\nVMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.\n\n## Affected\n\n- `cloud_foundation 9.1.x.x`\n- `cloud_foundation 9.0.x.x`\n- `cloud_foundation 5.x`\n- `vsphere_foundation 9.1.x.x`\n- `vsphere_foundation 9.0.x.x`\n- `vCenter >= 9.1.x.x < 9.1.0.0300`\n- `vCenter >= 9.0.x.x < 9.0.2.0100`\n- `vCenter >= 8.0 < 8.0 U3k`\n- `telco_cloud_infrastructure 3.0`\n- `telco_cloud_platform 5.1.x`\n- `telco_cloud_platform 5.0.x`\n- `telco_cloud_platform 4.x`\n- `telco_cloud_platform 3.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"hadal","depthScore":94,"depthScoreParts":{"impact":53.9,"likelihood":10.1,"exploitation":25,"ransomware":5},"changes":[]}