Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HMicrosoft Azure Automation
APPMicrosoftall versionsMicrosoft Azure Automation Update Management
APPMicrosoftall versionsMicrosoft Azure Security Center
APPMicrosoftall versionsMicrosoft Azure Sentinel
APPMicrosoftall versionsMicrosoft Container Monitoring Solution
APPMicrosoftall versionsMicrosoft Log Analytics Agent
APPMicrosoftall versionsMicrosoft Operations Management Suite Agent For Linux
APPMicrosoft< 1.8.1-0Microsoft System Center Operations Manager
APPMicrosoft20192022
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Related vulnerabilities
CVE-2021-38647CRITICAL9.8⚠ KEVsame product
Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
CVE-2025-29827CRITICAL9.9PL ✓same product
Nieprawidłowa autoryzacja w Azure Automation umożliwia privilege escalation
CVE-2024-21334CRITICAL9.8PL ✓same product
RCE w Open Management Infrastructure (OMI) — use-after-free
CVE-2021-38645HIGH7.8⚠ KEVsame product
Open Management Infrastructure Elevation of Privilege Vulnerability
CVE-2021-38648HIGH7.8⚠ KEVsame product
Open Management Infrastructure Elevation of Privilege Vulnerability