Blog | G5 Cyber Security

VMware fixed flaws in vROps that can be chained to compromise organizations

Two vulnerabilities in vRealize Operations product can expose organizations to a significant risk of attacks. The two vulnerabilities could be chained by a remote attacker to execute arbitrary code on a server giving and carry out multiple attacks on a companys infrastructure. The vulnerabilities were found by our researcher Egor Dimitrenko from Positive Technologies.VMware fixed CVE-2021-21975 and an arbitrary file write vulnerability that affects in v Realize Operations Manager API that was evaluated as Important severity with a CVSSv3 base score of 7.2.”]

Source: https://securityaffairs.co/wordpress/116216/security/vmware-vrops-flaws.html

Exit mobile version