RULE(RULE ID:333414)

Rule General Information
Release Date: 2021-04-07
Rule Name: vRealize Operations Manager Path Traversal Vulnerability (CVE-2021-21983)
Severity:
CVE ID:
Rule Protection Details
Description: Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actor with network access to the vRealize Operations Manager API can write files to arbitrary locations on the underlying photon operating system.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: https://www.vmware.com/security/advisories/VMSA-2021-0004.html
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://www.vmware.com/security/advisories/VMSA-2021-0004.html