VMware Aria Operations
cpe:2.3:a:vmware:aria_operations:*:*:*:*:*:*:*
This vulnerability is being actively exploited in the wild.
A local privilege escalation vulnerability has been identified in VMware Aria Operations and VMware Tools. This issue allows a malicious local actor with non-administrative privileges to escalate privileges to root on a virtual machine (VM) where VMware Tools is installed. The vulnerability can be exploited on VMs managed by Aria Operations with Software Development Management Platform (SDMP) enabled.
Exploitation of this vulnerability allows for local privilege escalation, enabling a user with non-administrative rights to gain root access on the affected VM.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.