CVE-2021-22006
HIGHVMware Cloud Foundation 3.0-4.9 and vCenter Server - Reverse Proxy Bypass via URI Handling
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-22006. PoCs published by CrackerCat.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2021-22005, which targets VMware vCenter Server. The exploit leverages a file upload vulnerability to achieve remote code execution (RCE) by creating a malicious agent and uploading a JSP shell.
Description
The vCenter Server contains a reverse proxy bypass vulnerability due to the way the endpoints handle the URI. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to access restricted endpoints.
Exploits (1)
This repository contains a functional exploit for CVE-2021-22005, which targets VMware vCenter Server. The exploit leverages a file upload vulnerability to achieve remote code execution (RCE) by creating a malicious agent and uploading a JSP shell.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N