August pack of things: Security Vulnerabilities, VMware Expert 2021, VMworld 2021, and more
Critical Security Vulnerability
- Workspace One Access and vRealize Automation
VMware has release a security notice VMSA-2021-0016 in regards to Workspace One Access (WOA) i.e VMware Identity Manager (vIDM) with a CVSSv3 base score of 8.6. It is encourage to apply the patch or workaround as soon as possible. This also applies to vRealize Automation that has embedded vIDM aka WOA. - Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975)
This is impacting vRealize Operations Manager which can be a standalone product, in VMware Cloud Foundation or vCloud Suite and deployed by vRealize Suite Lifecycle Manager. It has a CVSSv3 base score of 8.6 which is highly critical. This allows authenticated user via API to vROps the permission to write files directly locally to the underlying OS, Photon.
VMware vExpert 2021 Second Half
Congrats to all new vExpert 2021 from Second Half announcement. It is not easy to have such a big community with everyone contributing without all these individual who have contributed one way or the other outside your day job.
VMworld 2021 Tracks
Comments