← العودة للجدول
CVE-2021-21978
CVE-2021-21978 — VMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code exe
📅 2021-03-03
🔴 Critical 🔥 Yes NVD Exploit VMware CVSS 9.8 🎯 EPSS 90.5%

📋 الوصف الكامل

VMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code execution vulnerability. Improper input validation and lack of authorization leading to arbitrary file upload in logupload web application. An unauthorized attacker with network access to View Planner Harness could upload and execute a specially crafted file leading to remote code execution within the logupload container.

💻 الأنظمة المتأثرة

VMware

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2021-21978

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2021-21978 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←