Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76fp-m4vp-hxrq

Опубликовано: 29 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

EPSS

Процентиль: 75%
0.00915
Низкий

7.8 High

CVSS3

Дефекты

CWE-267

Связанные уязвимости

CVSS3: 7.8
ubuntu
4 месяца назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
nvd
4 месяца назад

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

CVSS3: 7.8
debian
4 месяца назад

VMware Aria Operations and VMware Tools contain a local privilege esca ...

suse-cvrf
3 месяца назад

Security update for open-vm-tools

suse-cvrf
3 месяца назад

Security update for open-vm-tools

EPSS

Процентиль: 75%
0.00915
Низкий

7.8 High

CVSS3

Дефекты

CWE-267