Saturday, February 27, 2021

VMware vCenter Server: Unauthenticated Remote Code Execution (CVE-2021-21972)

Description
The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Server. The affected vCenter Server plugin for vROPs is available in all default installations. vROPs does not need be present to have this endpoint available.
Solution(s)
  • vmware-vcenter-cve-2021-21972-upgrade-latest


  • References
  • https://attackerkb.com/topics/cve-2021-21972
  • CVE - 2021-21972
  • https://www.vmware.com/security/advisories/VMSA-2021-0002.html
  • https://swarm.ptsecurity.com/unauth-rce-vmware/




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore