Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76fp-m4vp-hxrq

Опубликовано: 29 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

EPSS

Процентиль: 94%
0.0788
Низкий

7.8 High

CVSS3

Дефекты

CWE-267

Связанные уязвимости

CVSS3: 7.8
ubuntu
10 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
redhat
10 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
nvd
10 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
msrc
11 дней назад

VMSA-2025-0015: VMware Aria Operations and VMware Tools updates address multiple vulnerabilities (CVE-2025-41244,CVE-2025-41245, CVE-2025-41246)

CVSS3: 7.8
debian
10 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege esca ...

EPSS

Процентиль: 94%
0.0788
Низкий

7.8 High

CVSS3

Дефекты

CWE-267