CVE-2026-47632
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:05:45
- Zuletzt bearbeitet 18.08.2026 16:17:10
Improper certificate validation in Azure Connected Machine Agent allows an unauthorized attacker to elevate privileges over an adjacent network.
CVE-2026-40381
- EPSS 0.22%
- Veröffentlicht 12.05.2026 16:59:31
- Zuletzt bearbeitet 18.05.2026 13:35:34
Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
CVE-2026-26117
- EPSS 0.44%
- Veröffentlicht 10.03.2026 17:05:20
- Zuletzt bearbeitet 13.03.2026 20:14:21
Authentication bypass using an alternate path or channel in Azure Windows Virtual Machine Agent allows an authorized attacker to elevate privileges locally.
CVE-2026-21224
- EPSS 0.31%
- Veröffentlicht 13.01.2026 17:56:51
- Zuletzt bearbeitet 14.01.2026 20:39:55
Stack-based buffer overflow in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
CVE-2025-58724
- EPSS 0.53%
- Veröffentlicht 14.10.2025 17:01:17
- Zuletzt bearbeitet 20.10.2025 20:14:00
Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
- EPSS 0.52%
- Veröffentlicht 14.10.2025 17:00:03
- Zuletzt bearbeitet 20.10.2025 20:12:49
Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
CVE-2025-49692
- EPSS 0.34%
- Veröffentlicht 09.09.2025 17:01:08
- Zuletzt bearbeitet 01.10.2026 16:10:00
Improper access control in Azure Windows Virtual Machine Agent allows an authorized attacker to elevate privileges locally.
CVE-2025-55316
- EPSS 0.36%
- Veröffentlicht 09.09.2025 17:01:07
- Zuletzt bearbeitet 12.09.2025 14:50:22
External control of file name or path in Azure Arc allows an authorized attacker to elevate privileges locally.
CVE-2024-38162
- EPSS 0.51%
- Veröffentlicht 13.08.2024 18:15:23
- Zuletzt bearbeitet 16.08.2024 20:41:43
Azure Connected Machine Agent Elevation of Privilege Vulnerability
CVE-2024-38098
- EPSS 0.63%
- Veröffentlicht 13.08.2024 18:15:10
- Zuletzt bearbeitet 16.08.2024 20:38:02
Azure Connected Machine Agent Elevation of Privilege Vulnerability