CVE-2025-41241

CWE-7543 documents3 sources
Severity
4.4MEDIUM
EPSS
0.1%
top 82.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 29

Description

VMware vCenter contains a denial-of-service vulnerability. A malicious actor who is authenticated through vCenter and has permission to perform API calls for guest OS customisation may trigger this vulnerability to create a denial-of-service condition.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:HExploitability: 0.7 | Impact: 3.6

Affected Packages4 packages

CVEListV5vmware/vcenter8.08.0 U3g+1
CVEListV5vmware/cloud_foundation5.x, 4.5.x
CVEListV5vmware/telco_cloud_platform5.x, 2.x

🔴Vulnerability Details

2
GHSA
GHSA-w9mx-hpxm-qx9w: VMware vCenter contains a denial-of-service vulnerability2025-07-29
CVEList
Denial-of-service vulnerability2025-07-29
CVE-2025-41241 (MEDIUM CVSS 4.4) | VMware vCenter contains a denial-of | cvebase.io