CVE-2025-41241 - CVE House
Back to Database
Status published Medium CVE-2025-41241

Denial-of-service vulnerability

Vulnerability Description

VMware vCenter contains a denial-of-service vulnerability. A malicious actor who is authenticated through vCenter and has permission to perform API calls for guest OS customisation may trigger this vulnerability to create a denial-of-service condition.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-41241

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

vCenter, Cloud Foundation, Telco Cloud Platform, Telco Cloud Infrastructure
Vulnerable Versions:
8.0, 7.0, 5.x, 4.5.x, 5.x, 2.x, 2.x

Timeline

Official Publish: July 29th, 2025
Last Modified: July 29th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H

Weaknesses (CWE)