[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"focus:critical-vmware-vcenter-rce-flaw-exploited-for-reverse-ssh-access-mst0sstd":3},{"item":4},{"id":5,"title":6,"slug":7,"summary":8,"severity":9,"category":10,"cve_ids":11,"affected_products":13,"action_required":17,"article_ids":18,"ioc_summary":20,"source_urls":21,"status":23,"expires_at":24,"created_at":25,"updated_at":26,"articles":27},"dbc2a2db-23a8-4011-a683-f56fcb925325","Critical VMware vCenter RCE flaw exploited for reverse SSH access","critical-vmware-vcenter-rce-flaw-exploited-for-reverse-ssh-access-mst0sstd","A critical directory traversal vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being actively exploited in the wild to deploy reverse SSH tools for persistence. At least 361 compromised hosts across 47 countries have been identified, with attackers establishing remote access on victim infrastructure. Any unpatched vCenter instance is at immediate risk of RCE and lateral movement.","critical","advisory",[12],"CVE-2026-59310",[14,15,16],"VMware vCenter Syslog Server","VMware","Broadcom","Immediately patch all VMware vCenter instances to the latest version. In parallel, hunt for reverse SSH connections and suspicious syslog service activity on vCenter servers. Block or isolate any vCenter system that cannot be patched within 24 hours.",[19],"785c4f04-6e50-4557-b823-c08c887ebe23",null,[22],"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fcritical-vmware-vcenter-rce-flaw-exploited-for-reverse-ssh-access\u002F","active","2026-08-16T14:06:15.437+00:00","2026-08-14T14:06:18.405976+00:00","2026-08-14T14:06:21.793083+00:00",[28],{"id":19,"title":6,"url":22}]