VYPR
Unrated severityCISA KEVNVD Advisory· Published Mar 31, 2021· Updated Oct 21, 2025

CVE-2021-21975

CVE-2021-21975

Description

Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal administrative credentials.

Affected products

1
  • VMware/vRealize Operations Manager APIdescription

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.