CVE-2021-22008

Publication date

2021-09-23 11:41:28

Family

vmware

State

PUBLISHED

Description

The vCenter Server contains an information disclosure vulnerability in VAPI (vCenter API) service. A malicious actor with network access to port 443 on vCenter Server may exploit this issue by sending a specially crafted json-rpc message to gain access to sensitive information.