vRealize Operations Manager API is susceptible to server-side request forgery. A malicious actor with network access to the vRealize Operations Manager API can steal administrative credentials or trigger remote code execution using CVE-2021-21983.
id: CVE-2021-21975
info:
name: vRealize Operations Manager API - Server-Side Request Forgery
au
...