CVE-2021-22020: Medium severity vmware vcenter server and cloud foundation vulnerability
The vCenter Server contains a denial-of-service vulnerability in the Analytics service. Successful exploitation of this issue may allow an attacker to create a denial-of-service condition on vCenter Server.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-22020?
CVE-2021-22020 is a denial-of-service vulnerability in the vCenter Server Analytics service.
How severe is CVE-2021-22020?
CVE-2021-22020 has a severity rating of medium, with a CVSS score of 5.5.
Which software versions are affected by CVE-2021-22020?
CVE-2021-22020 affects VMware Cloud Foundation versions 3.0 to 3.10.2.2, VMware Cloud Foundation versions 4.0 to 4.3, VMware vCenter Server version 6.7, and VMware vCenter Server version 7.0.
How can CVE-2021-22020 be exploited?
Exploiting CVE-2021-22020 can lead to a denial-of-service condition on vCenter Server.
Where can I find more information about CVE-2021-22020?
More information about CVE-2021-22020 can be found in the VMware Security Advisory VMSA-2021-0020: https://www.vmware.com/security/advisories/VMSA-2021-0020.html