Kaspersky ID:
KLA91190
Erkennungsdatum:
08/06/2026
Aktualisiert:
08/11/2026

Beschreibung

Multiple vulnerabilities were found in Microsoft Azure. Malicious users can exploit these vulnerabilities to bypass security restrictions, execute arbitrary code, gain privileges, obtain sensitive information, spoof user interface.

Below is a complete list of vulnerabilities:

  1. An elevation of privilege vulnerability in Application Insights Profiler can be exploited remotely to gain privileges.
  2. An elevation of privilege vulnerability in Azure Active Directory can be exploited remotely to gain privileges.
  3. An elevation of privilege vulnerability in Microsoft Azure Kubernetes Service can be exploited remotely to gain privileges.
  4. An information disclosure vulnerability in Azure Logic Apps can be exploited remotely to obtain sensitive information.
  5. An elevation of privilege vulnerability in Azure SQL Database can be exploited remotely to gain privileges.
  6. An elevation of privilege vulnerability in Microsoft Entra Provisioning Service can be exploited remotely to gain privileges.
  7. An elevation of privilege vulnerability in Azure SRE Agent can be exploited remotely to gain privileges.
  8. A spoofing vulnerability in Azure Entra ID can be exploited remotely to spoof user interface.
  9. An elevation of privilege vulnerability in Microsoft 365 Admin Center can be exploited remotely to gain privileges.
  10. An elevation of privilege vulnerability in Microsoft Purview eDiscovery can be exploited remotely to gain privileges.
  11. A remote code execution vulnerability in Azure Confidential Ledger can be exploited remotely to execute arbitrary code.

Ursprüngliche Informationshinweise

Betroffene Produkte

CVE Liste

  • CVE-2026-49163
    critical
  • CVE-2026-50481
    critical
  • CVE-2026-56161
    critical
  • CVE-2026-56162
    critical
  • CVE-2026-59115
    critical
  • CVE-2026-62830
    critical
  • CVE-2026-62873
    critical
  • CVE-2026-65668
    critical
  • CVE-2026-68823
    critical
  • CVE-2026-50516
    critical
  • CVE-2026-62869
    critical
  • CVE-2026-63522
    critical

KB Liste

Mehr erfahren

Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com

Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!
Kaspersky Next
Let´s go Next: Cybersicherheit neu gedacht
Erfahren Sie mehr
Neu: Kaspersky!
Dein digitales Leben verdient umfassenden Schutz!
Erfahren Sie mehr
Do you want to save your changes?
Your message has been sent successfully.