Source |
The Hacker News |
Identifiant |
2839148 |
Date de publication |
2021-05-25 21:57:58 (vue: 2021-05-26 05:05:49) |
Titre |
Critical RCE Vulnerability Found in VMware vCenter Server - Patch Now! |
Texte |
VMware has rolled out patches to address a critical security vulnerability in vCenter Server that could be leveraged by an adversary to execute arbitrary code on the server.
Tracked as CVE-2021-21985 (CVSS score 9.8), the issue stems from a lack of input validation in the Virtual SAN (vSAN) Health Check plug-in, which is enabled by default in the vCenter Server. "A malicious actor with network |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 21985 actor address adversary arbitrary check code could critical cve cvss default enabled execute found from has health input issue lack leveraged malicious network now out patch patches plug rce rolled san score security server stems tracked validation vcenter virtual vmware vsan vulnerability which |
Tags |
Vulnerability
|
Stories |
|
Move |
|