THREATOPS
THREAT OPSThreat News › [NVD] CVE-2021-21972 (CRITICAL 9.8) — The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Se

[NVD] CVE-2021-21972 (CRITICAL 9.8) — The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Se

lownvdPublished 2021-02-24

CVE-2021-21972 CVSS: 9.8 CRITICAL Published: 2021-02-24T17:15:15.833

The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Server. This affects VMware vCenter Server (7.x befo

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-21972