CVE-2021-21972
CVE-2021-21972
지원 대상
- VMware-VCSA-all-6.7.0-8217866、VMware-VIM-all-6.7.0-8217866 ✔
- VMware-VCSA-all-6.5.0-16613358 ✔
vCenter 6.7 U2+의 경우
vCenter 6.7U2+는 메모리에서 웹사이트를 실행하므로 이 익스플로잇은 6.7 u2+에서 작동하지 않습니다.
테스트 필요
vCenter 6.5 Linux(VCSA)/Window 테스트 대기 중
vCenter 6.7 Linux(VCSA)/Window 테스트 대기 중
vCenter 7.0 Linux(VCSA)/Window 테스트 대기 중
상세 정보
- 취약점은 임의 파일 업로드입니다.
- 문제가 있는 인터페이스는
/ui/vropspluginui/rest/services/uploadova이며, 전체 경로는 (https://domain.com/ui/vropspluginui/rest/services/uploadova)입니다.
- 저장소 내
payload 폴더의 tar 파일은 기본 Behinx3 웹셸입니다.
스크린샷
실행 시

성공


고지 사항
- 이 도구는 보안 담당자의 보안 테스트 및 연구 목적으로만 사용됩니다. 무단 테스트로 인해 발생하는 직간접적인 결과 및 손실은 모두 사용자 본인에게 책임이 있습니다.
- The tool is only used for security testing and research by security personnel. Any direct or indirect consequences and losses caused by unauthorized testing are the responsibility of the user.