A critical arbitrary file upload vulnerability in the Analytics service can be used by anyone who can reach vCenter Server over the network to gain access. The bug could have nasty repercussions, with exploits likely being hammered out minutes after the disclosures disclosure Users should patch this vulnerability immediately, the company said in its FAQ for VMSA-2021-0020. The time to act is Right now, said Bob Plankers, Technical Marketing Architect at VMware.”]
Source: https://threatpost.com/vmware-ransomware-bug-vcenter-server/174901/

