Security News > 2025 > March > Over 37,000 VMware ESXi servers vulnerable to ongoing attacks

2025-03-06 15:39
Over 37,000 internet-exposed VMware ESXi instances are vulnerable to CVE-2025-22224, a critical out-of-bounds write flaw that is actively exploited in the wild. [...]
News URL
Related news
- Ransomware on ESXi: The mechanization of virtualized attacks (source)
- Over 660,000 Rsync servers exposed to code execution attacks (source)
- Ransomware gang uses SSH tunnels for stealthy VMware ESXi access (source)
- New OpenSSH flaws expose SSH servers to MiTM and DoS attacks (source)
- Broadcom fixes three VMware zero-days exploited in attacks (source)
Related Vulnerability
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-03-04 | CVE-2025-22224 | Unspecified vulnerability in VMWare products VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. | 8.2 |