CVE-2021-21972
CVE-2021-21972
Works On
- VMware-VCSA-all-6.7.0-8217866, VMware-VIM-all-6.7.0-8217866 ✔
- VMware-VCSA-all-6.5.0-16613358 ✔
For vCenter6.7 U2+
vCenter 6.7U2+ runs the website in memory, so this exploit cannot work for 6.7 u2+.
Needs Testing
vCenter 6.5 Linux (VCSA)/Windows Awaiting Testing
vCenter 6.7 Linux (VCSA)/Windows Awaiting Testing
vCenter 7.0 Linux (VCSA)/Windows Awaiting Testing
Details
- The vulnerability is arbitrary file upload.
- The vulnerable endpoint is
/ui/vropspluginui/rest/services/uploadova, full path (https://domain.com/ui/vropspluginui/rest/services/uploadova).
- The
tar file in the payload folder in the repository is the default Behinder 3 webshell.
Screenshots
Runtime

Success


Disclaimer
- The tool is only for security testing and research by security personnel. Any direct or indirect consequences and losses caused by unauthorized testing are the responsibility of the user.
- The tool is only used for security testing and research by security personnel. Any direct or indirect consequences and losses caused by unauthorized testing are the responsibility of the user.