NVD - CVE-2021-21972
nvd.nist.gov › vuln › detailFeb 24, 2021 · Current Description . The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Server.