Source |
The Hacker News |
Identifiant |
7681237 |
Date de publication |
2022-10-26 09:54:00 (vue: 2022-10-26 06:05:35) |
Titre |
VMware Releases Patch for Critical RCE Flaw in Cloud Foundation Platform |
Texte |
VMware on Tuesday shipped security updates to address a critical security flaw in its VMware Cloud Foundation product.
Tracked as CVE-2021-39144, the issue has been rated 9.8 out of 10 on the CVSS vulnerability scoring system, and relates to a remote code execution vulnerability via XStream open source library.
"Due to an unauthenticated endpoint that leverages XStream for input serialization in |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 39144 address been cloud code critical cve cvss due endpoint execution flaw foundation has input issue its leverages library open out patch platform product rated rce relates releases remote scoring security serialization shipped source system tracked tuesday unauthenticated updates vmware vulnerability xstream |
Tags |
Vulnerability
|
Stories |
|
Move |
|