OMIGOD: Critical Vulnerabilities in OMI Affecting Countless Azure Customers
ID: 9007f9de-aa81-564a-bd60-90ed50bdf9ca
STIX ID: report--9007f9de-aa81-564a-bd60-90ed50bdf9ca
Feed Name: Wiz Blog
Wiz Research disclosed four critical OMIGOD vulnerabilities in Microsoft OMI—notably an unauthenticated RCE (CVE-2021-38647) that executes commands as root by omitting the Authorization header and several local privilege escalations—affecting many Azure VM management services (e.g., Log Analytics, Diagnostics, Security Center). The report includes root-cause analysis, exploitation proofs-of-concept, affected attack surfaces, and a disclosure timeline noting a public GitHub commit months before the official patch; it urges immediate detection and patching of OMI instances.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
