Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-21985 PoC — Vmware vSphere Client 输入验证错误漏洞

Source
Associated Vulnerability
Title:Vmware vSphere Client 输入验证错误漏洞 (CVE-2021-21985)
Description:Vmware vSphere Client是美国威睿(Vmware)公司的一个应用软件。提供虚拟化管理。 Vmware vSphere Client 存在输入验证错误漏洞,该漏洞由于vCenter Server默认启用的虚拟SAN健康检查插件缺乏输入验证,导致攻击者可以在底层操作系统上以不受限制的权限执行命令。
File Snapshot

[4.0K] /data/pocs/63286091523e331ba5c8e9e0735d1607c5722443 ├── [ 64M] 2021-06-22-CVE-2021-21985.burp ├── [2.7K] h5-vsan-context.jar ├── [1.1M] h5-vsan-service.jar ├── [3.0M] JNDIInjection-Bypass.jar ├── [3.0K] PoC1.py ├── [3.3K] PoC2.py ├── [ 19M] vropsplugin-service.jar └── [9.8K] VsanHttpProvider.py 0 directories, 8 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.