CVE-2021-22005: VMware vCenter Server File Upload Vulnerability. VMware
VMware vCenter Server File Upload Vulnerability. VMware vCenter Server contains a file upload vulnerability in the Analytics service that allows a user with network access to port 443 to execute code.
- CISA KEV-listed (remediation due 2021-11-17)
- used in ransomware campaigns
- EPSS 94.4% (100.0% percentile)