mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-10 15:59:29 +02:00
985 B
985 B
CVE-2021-21992
Description
The vCenter Server contains a denial-of-service vulnerability due to improper XML entity parsing. A malicious actor with non-administrative user access to the vCenter Server vSphere Client (HTML5) or vCenter Server vSphere Web Client (FLEX/Flash) may exploit this issue to create a denial-of-service condition on the vCenter Server host.
POC
Reference
- https://www.vmware.com/security/advisories/VMSA-2021-0020.html
- https://www.vmware.com/security/advisories/VMSA-2021-0020.html
Github
No PoCs found on GitHub currently.