CVE-2021-22017

Publication date

2021-09-23 12:13:01

Family

vmware

State

PUBLISHED

Description

Rhttproxy as used in vCenter Server contains a vulnerability due to improper implementation of URI normalization. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to bypass proxy leading to internal endpoints being accessed.