CVE-2021-38649CISA KEVEPSS p86.4%

CVE-2021-38649Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability

Microsoft / Open Management Infrastructure (OMI)

Description

Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation.

Scoring

CVSS 7.0 ()
VectorCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS2.89% probability of exploitation · percentile 86.4% · 2026-10-06T12:00:23Z
Last modified2026-08-10

CISA KEV entry

Added to KEV: 2021-11-03

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerabilitykev-cve-2021-386490%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
CVE
CVE-2025-62207
CVE
CVE-2025-30390
CVE
CVE-2025-53767
CVE
CVE-2026-35430
CVE
CVE-2025-54914
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.