Vulnerabilities Fixed in Microsoft Azure (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- Vulnerabilities in Azure HPC Pack, Monitor Agent, and Logic Apps fixed.
- CVSS scores from 7.8 to 8.8, all leading to privilege escalation.
- Authenticated attackers can exploit locally or over the network.
"Microsoft has fixed vulnerabilities in several Azure components. These allow an authenticated attacker to escalate privileges locally or over the network due to insufficient input validation or unsafe handling of untrusted data. The reported CVEs affect Azure HPC Pack, Azure Monitor Agent, and Azure Logic Apps with CVSS scores ranging from 7.8 to 8.8."
no comments yet.