The vSphere Web Client (FLEX/Flash) contains an...
High severity
Unreviewed
Published
Nov 25, 2021
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Nov 24, 2021
Published to the GitHub Advisory Database
Nov 25, 2021
Last updated
Jan 27, 2023
The vSphere Web Client (FLEX/Flash) contains an unauthorized arbitrary file read vulnerability. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to gain access to sensitive information.
References