← volver
CVE-2021-21978

CVE-2021-21978

EPSS 98.9%
Vexday Risk Score
40Atención
Decisión SSVC (CISA)
Attend
PoC disponible → seguir de cerca
CVSS EPSS 98.9%KEV nãoPoC Nuclei simMetasploit simPatch
Ciclo de vida
02 mar 2021Exploit Metasploit disponible
03 mar 2021Publicada en NVD
Recomendación: Planificar corrección próxima — ya existe PoC pública.
VMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code execution vulnerability. Improper input validation and lack of authorization leading to arbitrary file upload in logupload web application. An unauthorized attacker with network access to View Planner Harness could upload and execute a specially crafted file leading to remote code execution within the logupload container.
Productos afectados
n/a · VMware View Planner

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →