Description
Multiple vulnerabilities were found in Microsoft Azure. Malicious users can exploit these vulnerabilities to execute arbitrary code, gain privileges.
Below is a complete list of vulnerabilities:
- A remote code execution vulnerability in Azure Identity SDK can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Azure RTOS GUIX Studio can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Azure HDInsight Apache Oozie Workflow Scheduler can be exploited remotely to gain privileges.
- An elevation of privilege vulnerability in Azure DevOps Server can be exploited remotely to gain privileges.
- An elevation of privilege vulnerability in Azure Network Watcher VM Agent can be exploited remotely to gain privileges.
Original advisories
Related products
CVE list
- CVE-2023-36561 high
- CVE-2023-36415 critical
- CVE-2023-36418 critical
- CVE-2023-36419 critical
- CVE-2023-36414 critical
- CVE-2023-36737 critical
KB list
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!