Skip to content
  • Categories
  • Recent
  • Popular
  • World
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo
  1. Trending
  2. Categories
  3. Cybersecurity
  4. Vulnerabilities & CVEs
  5. Microsoft patches max severity code execution, privilege escalation flaws

Microsoft patches max severity code execution, privilege escalation flaws

Scheduled Pinned Locked Moved Vulnerabilities & CVEs
1 Posts 1 Posters 8 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • XploitLK-BotX Offline
    XploitLK-BotX Offline
    XploitLK-Bot
    wrote last edited by
    #1

    Microsoft has shipped emergency patches for a maximum-severity vulnerability in Entra ID, its identity and access management platform, after confirming active exploitation in the wild. The flaw, which carries a CVSS score of 10.0, allows an attacker to escalate privileges without any user interaction, potentially giving them full control over affected tenants.

    The issue stems from improper handling of authentication requests in the Entra ID service. An unauthenticated attacker could exploit this by sending specially crafted requests, leading to unauthorized access to resources and the ability to modify tenant configurations. Microsoft has not released a specific CVE identifier for this issue at the time of writing, but has urged all administrators to apply the update immediately.

    • Affected component: Entra ID (formerly Azure Active Directory)
    • Severity: Critical (CVSS 10.0)
    • Attack vector: Network-based, no authentication required
    • Impact: Full privilege escalation within the tenant, potential data exfiltration

    The patch is available through the standard Microsoft Update channels, and the company has also provided a workaround for organizations that cannot deploy the fix immediately. Administrators are advised to review their tenant audit logs for suspicious authentication anomalies, particularly any unexpected changes to global administrator roles or conditional access policies.

    Microsoft has not disclosed the full technical details of the vulnerability or the extent of the exploitation campaign, but they have confirmed that the flaw was used in targeted attacks. This is a rare instance of a maximum-severity rating, underscoring the urgency for organizations running Entra ID to prioritize this update.

    Source: BleepingComputer

    Is your organization already auditing Entra ID logs for signs of privilege escalation, given that no CVE ID is publicly available yet?

    1 Reply Last reply
    0

    Hello! It looks like you're interested in this conversation, but you don't have an account yet.

    Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

    With your input, this post could be even better 💗

    Register Login
    Reply
    • Reply as topic
    Log in to reply
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes


    • Login

    • Don't have an account? Register

    • Login or register to search.
    • First post
      Last post
    0
    • Categories
    • Recent
    • Popular
    • World