Known vulnerabilities in vCenter Server 8.0 U3e

Vendor: Broadcom
Version: 8.0 U3e
Software CPE: cpe:2.3:a:broadcom:vcenter-server:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting vCenter Server version 8.0 U3e vCenter Server 8.0 U3e is affected by 4 vulnerabilities: 2 critical, 1 medium, 1 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140094 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-59310
CWE-22 Critical
No
Exploited
8.0 U3k 30.07.2026 SB2026073025
#VU140093 - Improper Authentication
CVE-2026-59309
CWE-287 Critical
No
No
8.0 U3k 30.07.2026 SB2026073025
#VU116193 - Improper input validation
CVE-2025-41250
CWE-20 Medium
No
No
7.0 U3w, 8.0 U3g 30.09.2025 SB2025093031
SB2026021319
#VU113509 - Improper input validation
CVE-2025-41241
CWE-20 Low
No
No
7.0 U3v, 8.0 U3g 30.07.2025 SB2025073050
SB2026021319