Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actor with network access to the vRealize Operations Manager API can write files to arbitrary locations on the underlying photon operating system.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Cloud_foundation | Vmware | 3.0 (including) | 3.0 (including) |
| Cloud_foundation | Vmware | 3.0.1 (including) | 3.0.1 (including) |
| Cloud_foundation | Vmware | 3.0.1.1 (including) | 3.0.1.1 (including) |
| Cloud_foundation | Vmware | 3.5 (including) | 3.5 (including) |
| Cloud_foundation | Vmware | 3.5.1 (including) | 3.5.1 (including) |
| Cloud_foundation | Vmware | 3.7 (including) | 3.7 (including) |
| Cloud_foundation | Vmware | 3.7.1 (including) | 3.7.1 (including) |
| Cloud_foundation | Vmware | 3.7.2 (including) | 3.7.2 (including) |
| Cloud_foundation | Vmware | 3.8 (including) | 3.8 (including) |
| Cloud_foundation | Vmware | 3.8.1 (including) | 3.8.1 (including) |
| Cloud_foundation | Vmware | 3.9 (including) | 3.9 (including) |
| Cloud_foundation | Vmware | 3.9.1 (including) | 3.9.1 (including) |
| Cloud_foundation | Vmware | 3.10 (including) | 3.10 (including) |
| Cloud_foundation | Vmware | 4.0 (including) | 4.0 (including) |
| Cloud_foundation | Vmware | 4.0.1 (including) | 4.0.1 (including) |
| Vrealize_operations_manager | Vmware | 7.0.0 (including) | 7.0.0 (including) |
| Vrealize_operations_manager | Vmware | 7.5.0 (including) | 7.5.0 (including) |
| Vrealize_operations_manager | Vmware | 8.0.0 (including) | 8.0.0 (including) |
| Vrealize_operations_manager | Vmware | 8.0.1 (including) | 8.0.1 (including) |
| Vrealize_operations_manager | Vmware | 8.1.0 (including) | 8.1.0 (including) |
| Vrealize_operations_manager | Vmware | 8.1.1 (including) | 8.1.1 (including) |
| Vrealize_operations_manager | Vmware | 8.2.0 (including) | 8.2.0 (including) |
| Vrealize_operations_manager | Vmware | 8.3.0 (including) | 8.3.0 (including) |
| Vrealize_suite_lifecycle_manager | Vmware | 8.0 (including) | 8.0 (including) |
| Vrealize_suite_lifecycle_manager | Vmware | 8.0.1 (including) | 8.0.1 (including) |
| Vrealize_suite_lifecycle_manager | Vmware | 8.1 (including) | 8.1 (including) |
| Vrealize_suite_lifecycle_manager | Vmware | 8.2 (including) | 8.2 (including) |