🚨ATTN: fellow #VMware admins🚨
Time to patch your shit again.
https://www.vmware.com/security/advisories/VMSA-2021-0020.html
vCenter vulns:
- file upload (CVE-2021-22005)
- local privilege escalation (CVE-2021-21991)
- reverse proxy bypass (CVE-2021-22006)
- unauthenticated API endpoint (CVE-2021-22011)
- improper permission local privilege escalation (CVE-2021-22015)
- unauthenticated API information disclosure (CVE-2021-22012)
- file path traversal (CVE-2021-22013)
- reflected XSS (CVE-2021-22016)
- and more!
And here we go