16 results (0.003 seconds)

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

08 Apr 2025 — Untrusted search path in System Center allows an authorized attacker to elevate privileges locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-27743 • CWE-426: Untrusted Search Path •

CVSS: 10.0EPSS: 3%CPEs: 2EXPL: 0

12 Mar 2024 — Open Management Infrastructure (OMI) Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de infraestructura de gestión abierta (OMI) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21334 • CWE-416: Use After Free •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

12 Mar 2024 — Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability Infraestructura de gestión abierta (OMI) Vulnerabilidad de elevación de privilegios • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21330 • CWE-122: Heap-based Buffer Overflow •

CVSS: 6.5EPSS: 0%CPEs: 3EXPL: 0

14 Nov 2023 — Open Management Infrastructure Information Disclosure Vulnerability Vulnerabilidad de divulgación de información en Open Management Infrastructure. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36043 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-668: Exposure of Resource to Wrong Sphere •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

09 Aug 2022 — System Center Operations Manager: Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en System Center Operations Manager: Open Management Infrastructure (OMI) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-33640 •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 0

15 Jun 2022 — Azure Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios en Azure Open Management Infrastructure (OMI) Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-29149 •

CVSS: 7.5EPSS: 8%CPEs: 3EXPL: 0

13 Oct 2021 — SCOM Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información en SCOM • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-41352 •

CVSS: 7.8EPSS: 29%CPEs: 10EXPL: 0

15 Sep 2021 — Open Management Infrastructure Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios en Open Management Infrastructure. Este CVE ID es diferente de CVE-2021-38645, CVE-2021-38648 Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-38649 •

CVSS: 7.8EPSS: 33%CPEs: 10EXPL: 2

15 Sep 2021 — Open Management Infrastructure Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios en Open Management Infrastructure. Este ID CVE es único desde CVE-2021-38645, CVE-2021-38649 Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation. • https://packetstorm.news/files/id/164925 • CWE-287: Improper Authentication •

CVSS: 9.8EPSS: 94%CPEs: 10EXPL: 14

15 Sep 2021 — Open Management Infrastructure Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de Código Remota de Open Management Infrastructure By removing the authentication header, an attacker can issue an HTTP request to the OMI management endpoint that will cause it to execute an operating system command as the root user. This vulnerability was patched in OMI version 1.6.8-1 (released September 8th 2021). Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains... • https://packetstorm.news/files/id/164694 • CWE-287: Improper Authentication •