CVE-2021-22005: VMware vCenter Server File Upload Vulnerability. VMware
VMware vCenter Server File Upload Vulnerability. VMware vCenter Server contains a file upload vulnerability in the Analytics service that allows a user with network access to port 443 to execute code.
- CISA KEV-listed (remediation due 2021-11-17)
- used in ransomware campaigns
- EPSS 100.0% (100.0% percentile)
- CVSS 9.8 critical