Skip to content
COOEY

FAIL › dossier

Open Management Infrastructure (OMI)

PRODUCT

· dossier confidence 90%

OMI is a Microsoft cloud management technology that suffered a severe security incident in 2021, with multiple high and critical vulnerabilities actively exploited in the wild, including remote code execution used in ransomware attacks.

PROFILE
CategoryIT Management / Cloud InfrastructureWhat they doOMI (Open Management Infrastructure) is a Microsoft technology used for managing Azure VM Management Extensions and other cloud infrastructure components.
SECURITY POSTURE

OMI has a poor security posture, evidenced by multiple high and critical vulnerabilities in 2021 that were actively exploited in the wild, including remote code execution and privilege escalation flaws.

Notable failures
  • CVE-2021-38645: Privilege escalation actively exploited
  • CVE-2021-38648: Privilege escalation actively exploited
  • CVE-2021-38649: Privilege escalation actively exploited
  • CVE-2021-38647: Critical RCE exploited in ransomware attacks
Patterns: Repeated unpatched privilege escalation and RCE vulnerabilities in Azure VM Management Extensions
FAILURE HISTORY · 4
DATEEVENTSEVSUMMARY
2021-11-03 CVE-2021-38645 high A privilege escalation vulnerability in Microsoft's OMI within Azure VM Management Extensions was actively exploited in the wild.
2021-11-03 CVE-2021-38648 high A privilege escalation vulnerability in Microsoft's OMI within Azure VM Management Extensions was actively exploited in the wild.
2021-11-03 CVE-2021-38649 high A privilege escalation vulnerability in Microsoft's OMI within Azure VM Management Extensions was actively exploited in the wild.
2021-11-03 CVE-2021-38647 critical A Microsoft OMI vulnerability allowed remote code execution, actively exploited in ransomware attacks, impacting Azure VM Management Extensions.
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-29 04:08:47.262314+00:00