ZeroHour

CVE-2025-49692

CVSS 3.1
7.8 high
EPSS
<1%p27
Published
()
Modified
Description

Improper access control in Azure Windows Virtual Machine Agent allows an authorized attacker to elevate privileges locally.

Vendors
microsoft
Products
azure connected machine agent
Weakness
CWE-284
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.