QID 91930
QID 91930: Microsoft System Center Operations Manager (SCOM) Elevation of Privilege Vulnerability for August 2022
System Center Operations Manager (SCOM) is a cross-platform data center management system for operating systems and hypervisors.
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is file content.
Affected Software:
System Center 2022 Operations Manager
System Center 2019 Operations Manager
System Center 2016 Operations Manager
NOTE:This vulnerability only affects machines that have the SCOM web console installed
QID Detection Logic (Authenticated):
This authenticated QID checks the file versions from the Microsoft advisory with the versions on affected System Center Operations dll.
Successful exploitation allows an attacker to conduct Elevation of Privilege and Remote Code Execution Vulnerability.
- CVE-2022-33640 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2022-33640
CVEs related to QID 91930
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2022-33640 |
|