← לוח פגיעויות

CVE-2021-38647

קריטית 9.8 מנוצלת בשטח (KEV) בשימוש בכופרה

ניצול פעיל מאומת — קטלוג CISA KEV

שם
Microsoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
נוסף לקטלוג
יעד טיפול (פדרלי)
פעולה נדרשת
Apply updates per vendor instructions.

תיאור (מקור, אנגלית)

Open Management Infrastructure Remote Code Execution Vulnerability

מדדים

CVSS 3.1
9.8 (CRITICAL) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
100% (אחוזון 100) נכון ל-25/7/2026

מוצרים מושפעים

microsoft: azure automation state configuration; microsoft: azure automation update management; microsoft: azure diagnostics \(lad\); microsoft: azure open management infrastructure; microsoft: azure security center; microsoft: azure sentinel; microsoft: azure stack hub; microsoft: container monitoring solution; microsoft: log analytics agent; microsoft: system center operations manager

קישורים