logo

CVE-2021-39144

ID: d0d140ad-c631-5360-9932-e9316da43bc1

STIX ID: report--d0d140ad-c631-5360-9932-e9316da43bc1

Feed Name: Arctic Wolf Blog

Threat Score
75/100

Date Published: 2022-10-27

Date Updated: 2026-04-27

...
...

VMware Cloud Foundation NSX-V versions 3.x and earlier are affected by CVE-2021-39144, a critical (CVSS 9.8) unauthenticated remote code execution vulnerability via the XStream library that can execute as root; Arctic Wolf and VMware recommend applying vendor patches or upgrading, and the bulletin provides detailed workaround and patching steps after a public proof-of-concept was released on October 25, 2022, although no active exploitation has been observed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.