CVE-2021-21975
KEV RANSOMWAREHIGH 7.5EPSS 78.3%
Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal administrative credentials.
- CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N - EPSS
- 78.29% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2022-01-18, used in ransomware campaigns
- Nuclei
- high · CWE-918
- Published
- 2021-03-31
- Updated
- 2026-08-12
Proof-of-concept exploits (9)
- http://packetstormsecurity.com/files/162349/VMware-vRealize-Operations-Manager-Server-Sid…
- Al1ex/CVE-2021-2197513★ · 2021-03-31
- AnonymouID/POC2★ · 2022-04-25
- GuayoyoCyber/CVE-2021-2197527★ · 2021-04-02
- Vulnmachines/VMWare-CVE-2021-219753★ · 2021-11-26
- Vulnmachines/VmWare-vCenter-vulnerability8★ · 2022-07-26
- dorkerdevil/CVE-2021-219752★ · 2021-07-04
- murataydemir/CVE-2021-219754★ · 2021-04-02
- rabidwh0re/REALITY_SMASHER37★ · 2021-04-07
Nuclei templates (1)
Metasploit modules (1)
Exploit collections (4)
- chaitin/xray/blob/master/pocs/vmware-vrealize-cve-2021-21975-ssrf.yml
- helloexp/0day/tree/master/94-%E5%B8%B8%E7%94%A8%E8%BD%AF%E4%BB%B6%E4%B8%93%E5%8C%BA/14-VM…
- tzwlhack/Vulnerability/blob/main/VMware%20vRealize%20Operations%20Manager%20API%20SSRF%E6…
- zan8in/afrog/blob/main/pocs/afrog-pocs/CVE/2021/CVE-2021-21975.yaml