CVE-2021-22015
Summary
| CVE | CVE-2021-22015 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-09-23 13:15:00 UTC |
| Updated | 2023-02-03 19:12:00 UTC |
| Description | The vCenter Server contains multiple local privilege escalation vulnerabilities due to improper permissions of files and directories. An authenticated local user with non-administrative privilege may exploit these issues to elevate their privileges to root on vCenter Server Appliance. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 216265 VMware vCenter Server 7.0 Update 7.0 U2c (VMSA-2021-0020)
- 216266 VMware vCenter Server 6.7 Update 6.7 U3o (VMSA-2021-0020)
- 216267 VMware vCenter Server 6.5 Update 6.5 U3q (VMSA-2021-0020)