MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
vmware
Search

‘Unauthorized API’ in vCenter blows critical hole in VMware cost management tool

Thursday May 6, 2021. 04:52 AM , from TheRegister
Remote code execution possible on vRealize Business for Cloud – which knows a lot about your private and public platforms
VMware has admitted its vRealize Business for Cloud product includes an “unauthorised VAMI API” that can be exploited to achieve remote code execution on a virtual appliance. The security flaw is rated critical, scoring 9.8 on the ten-point Common Vulnerability Scoring System.…
https://go.theregister.com/feed/www.theregister.com/2021/05/06/unauthorised_api_creates_critical_fla
News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Current Date
Apr, Sat 20 - 15:06 CEST