CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2025-41244

🔥 Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-09-29
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

Affected Platforms (CPE)

📦
Vmware

Aria Operations

>= 8.0 and < 8.18.5
📦
Vmware

Cloud Foundation

>= 4.0 and <= 5.2.2
📦
Vmware

Cloud Foundation Operations

= 9.0
📦
Vmware

Open Vm Tools

>= 11.2.0 and < 12.5.4= 13.0.0

References & Advisories

相關漏洞威脅