CVE-2021-21975High· 7.5▾ Abyssal⚠ Exploited in the wildPoC availableServer Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal…
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 41.3 · likelihood 15.7 · exploitation 25 · ransomware 5
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Feb 1, 2022
Last analysed / modified upstream
78%
8 GitHub repos · Metasploit ×1 · Nuclei ×1
Added to the CISA catalog on Jan 18, 2022. Federal remediation due Feb 1, 2022. View catalog ↗
Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal administrative credentials.
cloud_foundation = 3.0cloud_foundation = 3.0.1cloud_foundation = 3.0.1.1cloud_foundation = 3.5cloud_foundation = 3.5.1cloud_foundation = 3.7cloud_foundation = 3.7.1cloud_foundation = 3.7.2cloud_foundation = 3.8cloud_foundation = 3.8.1cloud_foundation = 3.9cloud_foundation = 3.9.1cloud_foundation = 3.10cloud_foundation = 4.0cloud_foundation = 4.0.1vrealize_operations_manager = 7.0.0vrealize_operations_manager = 7.5.0vrealize_operations_manager = 8.0.0vrealize_operations_manager = 8.0.1vrealize_operations_manager = 8.1.0vrealize_operations_manager = 8.1.1vrealize_operations_manager = 8.2.0vrealize_operations_manager = 8.3.0vrealize_suite_lifecycle_manager = 8.0vrealize_suite_lifecycle_manager = 8.0.1vrealize_suite_lifecycle_manager = 8.1vrealize_suite_lifecycle_manager = 8.2Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2021-21983Medium· 6.5Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actor with network access to the vRealize Operations Manager API can write files to arbitrary locati…
CVE-2021-21985Critical· 9.8The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check plug-in which is enabled by default in vCenter Server
CVE-2021-21972Critical· 9.8The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin
CVE-2020-3992Critical· 9.8OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue
CVE-2021-26855Critical· 9.1Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34473Critical· 9.1Microsoft Exchange Server Remote Code Execution Vulnerability