Microsoft Azure是美国微软(Microsoft)公司的一套开放的企业级云计算平台。 Microsoft Azure OMI存在安全漏洞。以下产品和版本受到影响:Azure Automation State Configuration, DSC Extension,Azure Automation Update Management,Log Analytics Agent,Azure Diagnostics (LAD),Container Monitoring Solution,Azure S
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Azure Automation State Configuration, DSC Extension | 2.0.0 ~ DSC Agent versions: 2.71.1.33, 3.0.0.7 | - |
|
| Microsoft | Azure Automation Update Management | 1.0.0 ~ OMS Agent for Linux GA v1.14.13 | - |
|
| Microsoft | Log Analytics Agent | 1.0.0 ~ OMS Agent for Linux GA v1.14.13 | - |
|
| Microsoft | Azure Diagnostics (LAD) | 3.0.0 ~ LAD v4.0.27 and LAD v3.0.137 | - |
|
| Microsoft | Container Monitoring Solution | 1.0.0 ~ publication | - |
|
| Microsoft | Azure Security Center | 1.0.0 ~ OMS Agent for Linux GA v1.14.13 | - |
|
| Microsoft | Azure Sentinel | 1.0.0 ~ OMS Agent for Linux GA v1.14.13 | - |
|
| Microsoft | Azure Stack Hub | 1.0.0 ~ OMS Agent for Linux GA v1.14.13 | - |
|
| Microsoft | Open Management Infrastructure | 16.0 ~ OMI Version 1.6.9-1 | - |
|
| Microsoft | System Center Operations Manager (SCOM) 2022 | 10.22.0 ~ 10.22.1024.0 | - |
|
| Microsoft | System Center Operations Manager (SCOM) 2019 | 10.19.0 ~ 10.19.1152.0 | - |
|
| Microsoft | System Center Operations Manager (SCOM) 2016 | 7.6.0 ~ 7.6.1108.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-30136 | 9.8 CRITICAL | Windows Network File System Remote Code Execution Vulnerability |
| CVE-2022-30153 | 8.8 HIGH | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
| CVE-2022-30157 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-30158 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-30161 | 8.8 HIGH | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
| CVE-2022-30165 | 8.8 HIGH | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2022-30163 | 8.5 HIGH | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2022-22021 | 8.3 HIGH | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2022-30141 | 8.1 HIGH | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
| CVE-2022-30174 | 7.8 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2022-30167 | 7.8 HIGH | AV1 Video Extension Remote Code Execution Vulnerability |
| CVE-2022-30168 | 7.8 HIGH | Microsoft Photos App Remote Code Execution Vulnerability |
| CVE-2022-30173 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2022-30179 | 7.8 HIGH | Azure RTOS GUIX Studio Remote Code Execution Vulnerability |
| CVE-2022-30180 | 7.8 HIGH | Azure RTOS GUIX Studio Information Disclosure Vulnerability |
| CVE-2022-30160 | 7.8 HIGH | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability |
| CVE-2022-30188 | 7.8 HIGH | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2022-22018 | 7.8 HIGH | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2022-30193 | 7.8 HIGH | AV1 Video Extension Remote Code Execution Vulnerability |
| CVE-2022-30178 | 7.8 HIGH | Azure RTOS GUIX Studio Remote Code Execution Vulnerability |
Showing top 20 of 51 CVEs. View all on vendor page → →
No comments yet