vmware vrealize-operations CVE-2018-6978 is a vulnerability in VMware Vrealize Operations
Published on December 18, 2018

vRealize Operations (7.x before 7.0.0.11287810, 6.7.x before 6.7.0.11286837 and 6.6.x before 6.6.1.11286876) contains a local privilege escalation vulnerability due to improper permissions of support scripts. Admin user of the vROps application with shell access may exploit this issue to elevate the privileges to root on a vROps machine. Note: the admin user (non-sudoer) should not be confused with root of the vROps machine.

NVD


Products Associated with CVE-2018-6978

Want to know whenever a new CVE is published for VMware Vrealize Operations? stack.watch will email you.

 

Exploit Probability

EPSS
0.02%
Percentile
4.99%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.