target entity

vRealize Operations Manager API

1 source-linked records in the current knowledge graph.

high

CVE-2021-21975: VMware Server Side Request Forgery in vRealize Operations Manager API

Server Side Request Forgery (SSRF) in vRealize Operations Manager API prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API to perform a SSRF attack to steal administrative credentials. Required action: Apply updates per vendor instructions.

CVE-2021-21975EPSS 78.3%VMwarevRealize Operations Manager API
CISA KEV ↗ · unattributed attribution