Back to Live Pulse
CriticalVcenter serverPath Traversal
CVE-2026-59310
Description
VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.
Proof of Concept (POC) Links
Explore how this vulnerability can be reproduced or exploited.
https://medium.com/@quirso_de/active-exploitation-of-cve-2026-59310-361-victim-ips-across-47-countries-9783187cc6ffhttps://medium.com/@quirso_de/global-exploitation-of-cve-2026-59310-by-suspected-chinese-nexus-apt-related-cve-2026-59309-443a79e1466dhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-59310