CVE-2025-41244
Broadcom VMware Aria Operations and VMware Tools Privilege Defined with Unsafe Actions Vulnerability
VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.
HIGH · CVSS 7.8
⚠ CISA KEV
EPSS 0.00529
Act now
- Listed on CISA KEV (known exploited in the wild)
- SSVC exploitation status: active
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules14
YARA rules0