QID 216268

Date Published: 2021-09-22

QID 216268: VMware vCenter Server 7.0 Update 7.0 U2d (VMSA-2021-0020)

VMware vCenter Server is a server management solution that helps IT admins manage virtualized hosts and virtual machines in enterprise environments via a single console.

The vCenter Server contains file deletion and unauthenticated API endpoint vulnerabilities. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 8.1.

Affected Versions: vCenter Server 7.0
QID Detection Logic (Unauthenticated):
This QID checks for vulnerable versions of VMware vCenter Server with build version using web service present on target.

A malicious actor with network access to port 443 on vCenter Server may exploit this issue to perform unauthenticated VM network setting manipulation.(CVE-2021-22011)
A malicious actor with network access to port 9087 on vCenter Server may exploit this issue to delete non critical files.(CVE-2021-22018)

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as High - 6.4 severity.
  • Solution
    Vmware has released patch for VMware vCenter Server 7.0 , visit VMware vCenter Server 7.0 Update 2d Release Notes

    Refer to VMware advisory VMSA-2021-0020 for more information.

    CVEs related to QID 216268

    Software Advisories
    Advisory ID Software Component Link
    VMSA-2021-0020 URL Logo www.vmware.com/security/advisories/VMSA-2021-0020.html