Vulnerabilities > Microsoft > System Center Operations Manager

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-36043 Exposure of Resource to Wrong Sphere vulnerability in Microsoft System Center Operations Manager 2016/2019/2022
Open Management Infrastructure Information Disclosure Vulnerability
local
low complexity
microsoft CWE-668
6.5
2022-08-09 CVE-2022-33640 Unspecified vulnerability in Microsoft products
System Center Operations Manager: Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2022-06-15 CVE-2022-29149 Unspecified vulnerability in Microsoft products
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2021-10-13 CVE-2021-41352 Unspecified vulnerability in Microsoft System Center Operations Manager 2012/2016/2019
SCOM Information Disclosure Vulnerability
network
low complexity
microsoft
7.5
2021-09-15 CVE-2021-38645 Unspecified vulnerability in Microsoft products
Open Management Infrastructure Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2021-09-15 CVE-2021-38647 Improper Authentication vulnerability in Microsoft products
Open Management Infrastructure Remote Code Execution Vulnerability
network
low complexity
microsoft CWE-287
critical
9.8
2021-09-15 CVE-2021-38648 Improper Authentication vulnerability in Microsoft products
Open Management Infrastructure Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-287
7.8
2021-09-15 CVE-2021-38649 Unspecified vulnerability in Microsoft products
Open Management Infrastructure Elevation of Privilege Vulnerability
local
high complexity
microsoft
7.0
2021-02-25 CVE-2021-1728 Improper Privilege Management vulnerability in Microsoft System Center Operations Manager 2019
System Center Operations Manager Elevation of Privilege Vulnerability
network
low complexity
microsoft CWE-269
8.8
2020-06-09 CVE-2020-1331 Authentication Bypass by Spoofing vulnerability in Microsoft System Center Operations Manager
A spoofing vulnerability exists when System Center Operations Manager (SCOM) does not properly sanitize a specially crafted web request to an affected SCOM instance, aka 'System Center Operations Manager Spoofing Vulnerability'.
network
low complexity
microsoft CWE-290
5.4