CVE-2021-22011
23.09.2021, 12:15
vCenter Server contains an unauthenticated API endpoint vulnerability in vCenter Server Content Library. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to perform unauthenticated VM network setting manipulation.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | cloud_foundation | 3.0 ≤ 𝑥 < 5.0 |
vmware | vcenter_server | 6.5 |
vmware | vcenter_server | 6.7 |
vmware | vcenter_server | 7.0 |
𝑥
= Vulnerable software versions