CVE-2021-21981

HIGH

VMware NSX-T - Privilege Escalation via RBAC Role Assignment

Title source: llm
STIX 2.1

Description

VMware NSX-T contains a privilege escalation vulnerability due to an issue with RBAC (Role based access control) role assignment. Successful exploitation of this issue may allow attackers with local guest user account to assign privileges higher than their own permission level.

References (1)

Core 1
Core References
Patch, Vendor Advisory x_refsource_misc
https://www.vmware.com/security/advisories/VMSA-2021-0006.html

Scores

CVSS v3 7.8
EPSS 0.0005
EPSS Percentile 14.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-269
Status published
Products (1)
broadcom/vmware_nsx-t_data_center 3.1.1
Published Apr 19, 2021
Tracked Since Feb 18, 2026