CVE-2021-21973: VMware vCenter Server and Cloud Foundation Server Side Request Forgery (SSRF) Vulnerability
The vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue by sending a POST request to vCenter Server plugin leading to information disclosure. This affects: VMware vCenter Server (7.x before 7.0 U1c, 6.7 before 6.7 U3l and 6.5 before 6.5 U3n) and VMware Cloud Foundation (4.x before 4.2 and 3.x before 3.10.1.2).
Other sources
VMware vCenter Server and Cloud Foundation Server contain a SSRF vulnerability due to improper validation of URLs in a vCenter Server plugin. This allows for information disclosure.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-21973?
CVE-2021-21973 is a vulnerability in VMware vCenter Server and Cloud Foundation that allows for Server Side Request Forgery (SSRF) attacks.
What is the severity of CVE-2021-21973?
The severity of CVE-2021-21973 is medium with a CVSS score of 5.3.
How does CVE-2021-21973 affect VMware products?
CVE-2021-21973 affects VMware vCenter Server and Cloud Foundation versions 6.5, 6.7, and 7.0.
How can CVE-2021-21973 be exploited?
CVE-2021-21973 can be exploited by a malicious actor with network access to port 443 sending a POST request to a vCenter Server plugin.
Is there a fix for CVE-2021-21973?
Yes, VMware has released patches and workarounds to address the vulnerability. Please refer to the VMware security advisory for more information.