VMware (vCenter Server and Cloud Foundation) Data Breach

VMware (vCenter Server and Cloud Foundation) experienced a data breach that was reported on March 7, 2022. VMware vCenter Server and Cloud Foundation Server contain a SSRF vulnerability due to improper validation of URLs in a vCenter Server plugin. This allows for information disclosure.

Key Facts

Organization
VMware (vCenter Server and Cloud Foundation)
Date Reported
March 7, 2022
Incident Type
unknown
Industry
Technology
Severity Score
5/10
Confidence Level
high

Source

View original source - External link to primary source documentation

Understanding unknown Incidents

Data breaches can result in significant financial, operational, and reputational damage. Organizations should implement defense-in-depth strategies and maintain incident response capabilities.