Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-74278
HistorySep 24, 2021 - 12:00 a.m.

VMware vCenter Server Licensing Issue Vulnerability (CNVD-2021-74278)

2021-09-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.001 Low

EPSS

Percentile

36.0%

Vmware VMware vCenter Server is a suite of server and virtualization management software from Vmware, Inc. The software provides a centralized platform for managing VMware vSphere environments, automating the implementation and delivery of virtual infrastructure. vmware vCenter Server is vulnerable to an authorization issue stemming from a lack of authentication on the API endpoint in the vCenter Server Content Library, which allows access to port 443 TCP A remote, unauthenticated attacker can use this vulnerability to gain unauthorized access to the system and perform unauthenticated virtual machine network setup operations.

0.001 Low

EPSS

Percentile

36.0%