Skip to main content
critical CISA KEV Ransomware

CVE-2021-21972

VMware vCenter Server Remote Code Execution Vulnerability

// Description

VMware vCenter Server vSphere Client contains a remote code execution vulnerability in a vCenter Server plugin which allows an attacker with network access to port 443 to execute commands with unrestricted privileges on the underlying operating system.

// Required action

Apply updates per vendor instructions.

Federal remediation due Nov 17, 2021 — past due

Advertisement

// Coverage