Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76fp-m4vp-hxrq

Опубликовано: 29 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

EPSS

Процентиль: 79%
0.01338
Низкий

7.8 High

CVSS3

Дефекты

CWE-267

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 1 месяца назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
nvd
около 1 месяца назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
debian
около 1 месяца назад

VMware Aria Operations and VMware Tools contain a local privilege esca ...

suse-cvrf
26 дней назад

Security update for open-vm-tools

suse-cvrf
29 дней назад

Security update for open-vm-tools

EPSS

Процентиль: 79%
0.01338
Низкий

7.8 High

CVSS3

Дефекты

CWE-267