cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-21330,https://securityvulnerability.io/vulnerability/CVE-2024-21330,Elevation of Privilege Vulnerability Affects Open Management Infrastructure,"The Open Management Infrastructure (OMI) contains an elevation of privilege vulnerability that can be exploited by an authenticated attacker to gain elevated permissions on the affected system. Successfully exploiting this vulnerability allows the attacker to perform actions with higher privileges, potentially compromising the integrity and availability of the system. Users should ensure that they are running the latest version of OMI to mitigate the risks associated with this vulnerability. For further details, refer to the Microsoft Security Response Center.",Microsoft,"System Center Operations Manager (scom) 2019,System Center Operations Manager (scom) 2022,Azure Automation,Azure Automation Update Management,Azure Sentinel,Container Monitoring Solution,Azure Hdinsight,Open Management Infrastructure,Azure Security Center,Log Analytics Agent",7.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2024-03-12T16:57:56.930Z,0 CVE-2023-36419,https://securityvulnerability.io/vulnerability/CVE-2023-36419,Azure HDInsight Apache Oozie Workflow Scheduler XXE Elevation of Privilege Vulnerability,"The Azure HDInsight Apache Oozie Workflow Scheduler contains an XXE vulnerability that enables attackers to exploit XML external entity processing. This could allow an unauthorized user to gain elevated privileges, potentially leading to unauthorized access and manipulation of sensitive information within the system. Organizations utilizing Azure HDInsight should implement appropriate security patches and best practices to mitigate risks associated with this vulnerability.",Microsoft,Azure Hdinsight,8.8,HIGH,0.002099999925121665,false,,true,false,false,,,false,false,,2023-10-10T18:15:00.000Z,0 CVE-2023-38156,https://securityvulnerability.io/vulnerability/CVE-2023-38156,Azure HDInsight Apache Ambari JDBC Injection Elevation of Privilege Vulnerability,"A vulnerability has been identified in Azure HDInsight that allows attackers to exploit a JDBC injection flaw within the Apache Ambari interface. This weakness can lead to unauthorized elevation of privileges, potentially enabling an attacker to gain inappropriate access to system resources. Organizations using Azure HDInsight should promptly apply recommended mitigations and updates to safeguard their systems against potential exploitation of this vulnerability.",Microsoft,Azure Hdinsight,7.2,HIGH,0.0005699999746866524,false,,true,false,false,,,false,false,,2023-09-12T17:15:00.000Z,0 CVE-2023-35394,https://securityvulnerability.io/vulnerability/CVE-2023-35394,Azure HDInsight Jupyter Notebook Spoofing Vulnerability,Azure HDInsight Jupyter Notebook Spoofing Vulnerability,Microsoft,Azure Hdinsight,4.6,MEDIUM,0.07408999651670456,false,,false,false,false,,,false,false,,2023-08-08T18:15:00.000Z,0 CVE-2023-35393,https://securityvulnerability.io/vulnerability/CVE-2023-35393,Azure Apache Hive Spoofing Vulnerability,Azure Apache Hive Spoofing Vulnerability,Microsoft,Azure Hdinsight,4.5,MEDIUM,0.07408999651670456,false,,false,false,false,,,false,false,,2023-08-08T18:15:00.000Z,0 CVE-2023-36881,https://securityvulnerability.io/vulnerability/CVE-2023-36881,Azure Apache Ambari Spoofing Vulnerability,Azure Apache Ambari Spoofing Vulnerability,Microsoft,Azure Hdinsight,4.5,MEDIUM,0.07408999651670456,false,,false,false,false,,,false,false,,2023-08-08T18:15:00.000Z,0 CVE-2023-36877,https://securityvulnerability.io/vulnerability/CVE-2023-36877,Azure Apache Oozie Spoofing Vulnerability,Azure Apache Oozie Spoofing Vulnerability,Microsoft,Azure Hdinsight,4.5,MEDIUM,0.07408999651670456,false,,false,false,false,,,false,false,,2023-08-08T18:15:00.000Z,0 CVE-2023-38188,https://securityvulnerability.io/vulnerability/CVE-2023-38188,Azure Apache Hadoop Spoofing Vulnerability,Azure Apache Hadoop Spoofing Vulnerability,Microsoft,Azure Hdinsight,4.5,MEDIUM,0.07408999651670456,false,,false,false,false,,,false,false,,2023-08-08T18:15:00.000Z,0 CVE-2023-23408,https://securityvulnerability.io/vulnerability/CVE-2023-23408,Azure Apache Ambari Spoofing Vulnerability,Azure Apache Ambari Spoofing Vulnerability,Microsoft,Azure Hdinsight,4.5,MEDIUM,0.03990999981760979,false,,false,false,false,,,false,false,,2023-03-14T17:15:00.000Z,0