CVE-2021-38649: Open Management Infrastructure Elevation of Privilege Vulnerability
Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation.
Other sources
Open Management Infrastructure Elevation of Privilege Vulnerability
— NVD
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-38649?
CVE-2021-38649 is a privilege escalation vulnerability in Microsoft Open Management Infrastructure (OMI).
What is the severity of CVE-2021-38649?
CVE-2021-38649 has a severity rating of 7.8 (high).
Which software is affected by CVE-2021-38649?
Microsoft Open Management Infrastructure (OMI), Azure VM Management Extensions, Azure Automation State Configuration, Azure Automation Update Management, Azure Diagnostics (LAD), Azure Security Center, Azure Sentinel, Azure Stack Hub, Container Monitoring Solution, Log Analytics Agent, and System Center Operations Manager are affected by CVE-2021-38649.
What is the vulnerability description of CVE-2021-38649?
CVE-2021-38649 is an unspecified vulnerability in Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions that allows privilege escalation.
Is there any reference available for CVE-2021-38649?
Yes, you can find more information about CVE-2021-38649 at [Microsoft Security Guidance Advisory](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-38649).