Vulnerabilities > CVE-2021-21984 - Missing Authorization vulnerability in VMWare Vrealize Business for Cloud 7.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
VMware vRealize Business for Cloud 7.x prior to 7.6.0 contains a remote code execution vulnerability due to an unauthorised end point. A malicious actor with network access may exploit this issue causing unauthorised remote code execution on vRealize Business for Cloud Virtual Appliance.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |