Kaspersky ID:
KLA91190
Fecha de detección:
08/06/2026
Actualizado:
08/11/2026

Descripción

Multiple vulnerabilities were found in Microsoft Azure. Malicious users can exploit these vulnerabilities to bypass security restrictions, execute arbitrary code, gain privileges, obtain sensitive information, spoof user interface.

Below is a complete list of vulnerabilities:

  1. An elevation of privilege vulnerability in Application Insights Profiler can be exploited remotely to gain privileges.
  2. An elevation of privilege vulnerability in Azure Active Directory can be exploited remotely to gain privileges.
  3. An elevation of privilege vulnerability in Microsoft Azure Kubernetes Service can be exploited remotely to gain privileges.
  4. An information disclosure vulnerability in Azure Logic Apps can be exploited remotely to obtain sensitive information.
  5. An elevation of privilege vulnerability in Azure SQL Database can be exploited remotely to gain privileges.
  6. An elevation of privilege vulnerability in Microsoft Entra Provisioning Service can be exploited remotely to gain privileges.
  7. An elevation of privilege vulnerability in Azure SRE Agent can be exploited remotely to gain privileges.
  8. A spoofing vulnerability in Azure Entra ID can be exploited remotely to spoof user interface.
  9. An elevation of privilege vulnerability in Microsoft 365 Admin Center can be exploited remotely to gain privileges.
  10. An elevation of privilege vulnerability in Microsoft Purview eDiscovery can be exploited remotely to gain privileges.
  11. A remote code execution vulnerability in Azure Confidential Ledger can be exploited remotely to execute arbitrary code.

Notas informativas originales

Productos relacionados

Lista CVE

  • CVE-2026-49163
    critical
  • CVE-2026-50481
    critical
  • CVE-2026-56161
    critical
  • CVE-2026-56162
    critical
  • CVE-2026-59115
    critical
  • CVE-2026-62830
    critical
  • CVE-2026-62873
    critical
  • CVE-2026-65668
    critical
  • CVE-2026-68823
    critical
  • CVE-2026-50516
    critical
  • CVE-2026-62869
    critical
  • CVE-2026-63522
    critical

Lista KB

Leer más

Conozca las estadísticas de las vulnerabilidades que se propagan en su región statistics.securelist.com

¿Has encontrado algún error en la descripción de esta vulnerabilidad? ¡Háznoslo saber!
Kaspersky Next:
ciberseguridad redefinida
Leer más
Nuevo Kaspersky
¡Su vida digital merece una protección completa!
Leer más
Do you want to save your changes?
Your message has been sent successfully.