VMware Security Advisory
VMware has disclosed new vulnerabilities, covered by VMware Security Advisory 2022-0030 and 2021-0025. They are rated 7.1 to 7.5 on the CVSS scale.
VMware has disclosed new vulnerabilities. They are covered by VMware Security Advisory 2022-0030 and 2021-0025, and rated 7.1 to 7.5 on the CVSS scale. Gaps like these should be closed as quickly as possible.
VMSA-2022-0030
The published advisory (VMSA-2022-0030) covers several vulnerabilities at once. vCenter Server and ESXi Server are affected. Further detail, workarounds and patch links are at VMware.
VMSA-2021-0025
This one affects vCenter Server and lets an attacker escalate their privileges. The fix is the same as for the advisory above. Further detail, workarounds and patch links are at VMware.
VMware reports no known attacks so far. With a published vulnerability that can change within hours. Both soulTec and VMware recommend patching the affected systems immediately. If you need a hand, we are here.