logo

OMIGOD: Critical Vulnerabilities in OMI Affecting Countless Azure Customers

ID: 9007f9de-aa81-564a-bd60-90ed50bdf9ca

STIX ID: report--9007f9de-aa81-564a-bd60-90ed50bdf9ca

Feed Name: Wiz Blog

Threat Score
90/100

Date Published: 2021-09-14

Date Updated: 2026-05-01

...
...

Wiz Research disclosed four critical OMIGOD vulnerabilities in Microsoft OMI—notably an unauthenticated RCE (CVE-2021-38647) that executes commands as root by omitting the Authorization header and several local privilege escalations—affecting many Azure VM management services (e.g., Log Analytics, Diagnostics, Security Center). The report includes root-cause analysis, exploitation proofs-of-concept, affected attack surfaces, and a disclosure timeline noting a public GitHub commit months before the official patch; it urges immediate detection and patching of OMI instances.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.