VMware vCenter Unauthenticated RCE

Published on 16 Jun 2021
Vulnerability

vCenter Server is VMware’s unified management utility, and it is used to handle virtual machines, various ESXi hosts, and other resources. A flaw in VMware vCenter/vSphere that enables an anonymized hacker to execute code on the VMware hypervisor remotely (CVE-2021-21972). Every malicious user who can connect to port 443 on your vCenter server can fully compromise the system, its files, and any VMs it holds.

Mitigation / Precaution

  • Ensure that no single vCenter property is directly accessible through the internet.Since a local network computer may be used to hack internal hosts, prioritise patching as soon as possible.
Manindar Mohan
Written by
Cyber Security Lead Engineer

Manieendar is a dedicated Security Engineer with a wealth of experience in the cybersecurity landscape. He plays a pivotal role at Beagle Security, where he employs his extensive knowledge to safeguard systems against cyber threats. Manieendar's passion for cybersecurity extends beyond his professional role; he actively contributes to the online security community through insightful articles and speaking engagements.

Experience the Beagle Security platform
Unlock one full penetration test and all Advanced plan features free for 14 days
4.8 on G2 • ISO 27001 certified
See How Beagle Security Works
No credit card • No setup required
Launch interactive demo