Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76fp-m4vp-hxrq

Опубликовано: 29 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

EPSS

Процентиль: 95%
0.08438
Низкий

7.8 High

CVSS3

Дефекты

CWE-267

Связанные уязвимости

CVSS3: 7.8
ubuntu
12 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
redhat
12 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
nvd
12 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
msrc
2 месяца назад

VMSA-2025-0015: VMware Aria Operations and VMware Tools updates address multiple vulnerabilities (CVE-2025-41244,CVE-2025-41245, CVE-2025-41246)

CVSS3: 7.8
debian
12 месяцев назад

VMware Aria Operations and VMware Tools contain a local privilege esca ...

EPSS

Процентиль: 95%
0.08438
Низкий

7.8 High

CVSS3

Дефекты

CWE-267