CyberSec.Space Logo
Back to CVE Browser

CVE-2021-21973

Known Exploited (CISA KEV)MEDIUM
5.3
CVSS Severity Score
EPSS Score88.6280%
EPSS Percentile90.78th
PublishedFeb 24, 2021
Last ModifiedOct 30, 2025

Vulnerability Description

The vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue by sending a POST request to vCenter Server plugin leading to information disclosure. This affects: VMware vCenter Server (7.x before 7.0 U1c, 6.7 before 6.7 U3l and 6.5 before 6.5 U3n) and VMware Cloud Foundation (4.x before 4.2 and 3.x before 3.10.1.2).

Affected Platforms (CPE)

πŸ“¦
Vmware

Cloud Foundation

>= 3.0 and < 3.10.1.2
πŸ“¦
Vmware

Cloud Foundation

>= 4.0 and < 4.2
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.5
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 6.7
πŸ“¦
Vmware

Vcenter Server

= 7.0
πŸ“¦
Vmware

Vcenter Server

= 7.0
πŸ“¦
Vmware

Vcenter Server

= 7.0
πŸ“¦
Vmware

Vcenter Server

= 7.0
πŸ“¦
Vmware

Vcenter Server

= 7.0
πŸ“¦
Vmware

Vcenter Server

= 7.0
πŸ“¦
Vmware

Vcenter Server

= 7.0

References & Advisories

Related Vulnerabilities