SARA / Free Tools / CVE / CVE-2025-41244

CVE-2025-41244 — Broadcom VMware Aria Operations and VMware Tools Privilege Defined with Unsafe A

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability

CVSS
7.8 HIGH
EPSS
47.00% (top 35.90%)
CWE
CWE-267
Published
2025-09-29T16:09:51.871Z
Last modified
2026-02-26T17:47:52.174Z
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA KEV — Actively Exploited
Added to KEV
2025-10-30
BOD 22-01 due
2025-11-20
Ransomware use
Unknown

01What is this vulnerability?

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

02Affected products

VendorProductVersions
VMwareVCF operations9.0.x
VMwareVMware tools13.x.x.x, 12.5.x
VMwareVMware Aria Operations8.18.x
VMwareVMware Cloud Foundation5.x, 4.x
VMwareVMware Telco Cloud Platform5.x, 4.x
VMwareVMware Telco Cloud Infrastructure3.x, 2.x

03Active exploitation status

Yes — actively exploited. Added to the CISA KEV catalog on 2025-10-30. Ransomware use: Unknown.

04Recommended remediation

05Technical details

For the full vendor write-up, exploit chains, and reference implementations, see the references list in section 09.

06Detection signatures

Open the Sigma generator with a pre-filled prompt for this CVE to draft a starting detection in your stack of choice:

Open in Sigma generator →

07Related CVEs

CVE-2025-41245
Cited in vendor advisory
CVE-2025-41246
Cited in vendor advisory

08Timeline

09References

Want this in your SOAR or SIEM?
SARA's API returns EPSS, CVSS, KEV, and an analyst-grade summary in one call.
Read the API reference →