CVE-2021-38648highunder attack

CVE-2021-38648: high-severity vulnerability in Microsoft Open Management Infrastructure

Open Management Infrastructure Elevation of Privilege Vulnerability

Published · Updated

91Vexday Risk Score

Patch now. It under exploitation confirmed by CISA and has a working public exploit.

ssvc Actcvss 7.8epss 11%
from disclosure to weapon0 days
Published on NVDSep 15
metasploitSep 14
CISA KEV+49d
exploitation probability
11%top 4% of all CVEs
observed exploitation
yesCISA + VulnCheck
1 public exploit(s)
Action required by CISAfederal deadline: 2021-11-17

Apply updates per vendor instructions.

In short

A vulnerability in Open Management Infrastructure allows an authenticated attacker to escalate their privileges to a higher level of system access. This is dangerous because it enables unauthorized administrative control over the affected system.

Technical detail

This elevation of privilege vulnerability in OMI allows authenticated local users to gain elevated system privileges through insufficient access controls. The attack requires prior authentication and successful exploitation grants attacker elevated privileges on the target system.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

Open Management Infrastructure Elevation of Privilege Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.