Lucene search

K
cvelistVmwareCVELIST:CVE-2021-22014
HistorySep 23, 2021 - 11:59 a.m.

CVE-2021-22014

2021-09-2311:59:00
vmware
www.cve.org
1

8.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

43.1%

The vCenter Server contains an authenticated code execution vulnerability in VAMI (Virtual Appliance Management Infrastructure). An authenticated VAMI user with network access to port 5480 on vCenter Server may exploit this issue to execute code on the underlying operating system that hosts vCenter Server.

CNA Affected

[
  {
    "product": "VMware vCenter Server, VMware Cloud Foundation",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "VMware vCenter Server(7.x before 7.0 U2c, 6.7 before 6.7 U3o and 6.5 before 6.5 U3q) and VMware Cloud Foundation (4.x before 4.3 and 3.x before 3.10.2.2)"
      }
    ]
  }
]

8.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

43.1%

Related for CVELIST:CVE-2021-22014