References https://nvd.nist.gov/vuln/detail/CVE-2021-21985 https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/23602 https://www.tenable.com/blog/cve-2021-21985-critical-vmware-vcenter-server-remote-code-execution https://github.com/alt3kx/CVE-2021-21985_PoC https://www.sentinelone.com/vulnerability-database/cve-2021-21985/ https://kb.vmware.com/s/article/83829 https://www.rapid7.com/blog/post/2021/05/26/cve-2021-21985-vcenter-server-what-you-need-to-know/ https://www.securityweek.com/vmware-urges-customers-immediately-patch-critical-vsphere-vulnerability/ https://attackerkb.com/topics/X85GKjaVER/cve-2021-21985 https://blog.csdn.net/weixin_45728976/article/details/117290347
Related Vulnerabilities北京亿赛通科技发展有限责任公司电子文档安全管理系统CDGServer3-client存在前台sql漏洞PoCCVE-2026-57219: RabbitMQ Management - OAuth 2 Client Secret Disclosurekotaemon /check_connection 命令执行漏洞(CVE-2026-69098)Check Point VPN IKEv1 权限绕过漏洞(CVE-2026-50751)PoCCVE-2025-32778: Web-Check < 2.0.1 Screenshot API - OS Command InjectionPoCCVE-2026-50751: Check Point IKEv1 Remote-Access VPN - Certificate Authentication BypassIEI 威強電工業電腦|iVEC-IEI Virtualization Edge Computer - 存在4個漏洞云供应链管理系统GetTodayCheckRecord存在SQL注入漏洞云供应链管理系统 GetCheckRecord 存在SQL注入漏洞SysAid /mdm/checkin XML 外部实体注入漏洞(CVE-2025-2775)智邦国际ERP /SYSN/json/pcclient/GetAllPrintTemplate.ashx SQL 注入漏洞AIClient2API /api/login 默认口令漏洞福建科立讯通信指挥调度管理平台 /api/client/fax/send_fax.php 命令执行漏洞