CVE Published: 10/11/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: vmware |
Vendor: n/a |
Product: VMware vCenter Server and VMware Cloud Foundation Status : PUBLISHED
CVE-2021-22048 Description
The vCenter Server contains a privilege escalation vulnerability in the IWA (Integrated Windows Authentication) authentication mechanism. A malicious actor with non-administrative access to vCenter Server may exploit this issue to elevate privileges to a higher privileged group.