Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2021-1728

Опубликовано: 09 фев. 2021
Источник: msrc
CVSS3: 8.8
EPSS Низкий

Описание

System Center Operations Manager Elevation of Privilege Vulnerability

FAQ

In what instances do I need to install the security update for this vulnerability?

This vulnerability only affects machines that have any of the following System Center 2019 - Operations Manager (SCOM) components installed:

  • Management Server
  • Microsoft Monitoring Agent
  • Gateway

Is there a prerequisite for installing the security update?

Yes. To apply this update, you must have Update Rollup 2 for System Center Operations Manager 2019 installed. See the How to obtain Update Rollup 2 for System Center Operations Manager 2019 section for instructions.

Do I need to install the update if I do not have "Enable Service log on" feature enabled?

No. This update is required if “Service Log on” or “Interactive Log on” is enabled for customers on System Center 2019 – Operations Manager.

Обновления

ПродуктСтатьяОбновление
System Center 2019 Operations Manager

Показывать по

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

Exploitation Less Likely

Older Software Release

Exploitation Less Likely

DOS

N/A

EPSS

Процентиль: 79%
0.01318
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 5 лет назад

System Center Operations Manager Elevation of Privilege Vulnerability

CVSS3: 8.8
github
больше 3 лет назад

System Center Operations Manager Elevation of Privilege Vulnerability

CVSS3: 8.8
fstec
почти 5 лет назад

Уязвимость программы для управления и мониторинга ИТ-сервисов System Center Operations Manager, связанная с ошибками управления привилегиями, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 79%
0.01318
Низкий

8.8 High

CVSS3