CVE-2021-38648CISA KEVEPSS p95.9%

CVE-2021-38648Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability

Microsoft / Open Management Infrastructure (OMI)

Description

Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation.

Scoring

CVSS 7.8 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS11.42% probability of exploitation · percentile 95.9% · 2026-10-05T12:00:23Z
Last modified2026-08-10

CISA KEV entry

Added to KEV: 2021-11-03

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerabilitykev-cve-2021-386480%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
CVE
CVE-2025-62207
CVE
CVE-2026-24304
CVE
Microsoft Windows Hyper-V Privilege Escalation Vulnerability
CVE
CVE-2026-47280
CVE
CVE-2026-35430
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.