CRITICAL
CVE-2021-38647
CVSS
9.8
KEV
Description
Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
Summary dbcve.org
CVE-2021-38647 is a critical remote code execution vulnerability in Open Management Infrastructure (OMI), an open-source implementation of WBEM used in Azure and Windows management tools. The flaw allows unauthenticated attackers to execute arbitrary code via specially crafted HTTP requests to the OMI management server.
Mitigation
Immediately patch or upgrade OMI agents on all affected systems to the latest secure version, prioritizing internet-facing and production systems. If patching is not immediately possible, consider network segmentation or disabling OMI where not required.
EPSS Score
99.93%
Probability of exploitation in next 30 days
100th percentile
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38647
Patch, Vendor Advisory
http://packetstormsecurity.com/files/164694/Microsoft-OMI-Management-Interface-Authentication-Bypass.html
Exploit, Third Party Advisory, VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-38647
Patch, Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-38647
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.