Back to search
CVE-2021-22050
Published: Feb 16, 2022
Modified: Aug 3, 2024
PUBLISHED
Description
ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with network access to ESXi may exploit this issue to create a denial-of-service condition by overwhelming rhttpproxy service with multiple requests.
| Vendor | Product | Versions |
|---|---|---|
n/a | VMware ESXi and VMware Cloud Foundation | affected VMware ESXi(7.0 U3 before ESXi70U3c-19193900, ESXi 6.7 ESXi670-202111101-SG and ESXi 6.5 before ESXi650-202110101-SG) and VMware Cloud Foundation (4.x before 4.4 and 3.x before 3.11) |
References
https://www.vmware.com/security/advisories/VMSA-2022-0004.html
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now