VMware has published a security advisory, confirming the reports that CVE-2021- 22005 is being exploited in the wild on the 24th September 2021. CISA expects a widespread exploitation on this vulnerability. It is recommended that you take the necessary precautions by ensuring your products are always updated.
VMware CVE-2021-22005
For more information on these VMware updates, you can follow this URL:
https://www.vmware.com/security/advisories/VMSA-2021-0020.html
The Guyana National CIRT recommends that users and administrators review these updates and apply them where necessary.
PDF Download: VMware vCentre Server Vulnerability CVE 2021 22005 Under Active Exploit.pdf
References
VMware vCentre Server Vulnerability CVE-2021-22005 Under Active Exploit (24th September 2021). Retrieved from Cybersecurity & Infrastructure Security Agency.
https://us-cert.cisa.gov/ncas/current-activity/2021/09/24/vmware-vcenter- server-vulnerability-cve-2021-22005-under-active
VMware security updates (n.d). Retrieved from VMware.
https://www.vmware.com/security/advisories/VMSA-2021-0020.html