CVE Vulnerabilities

CVE-2023-21777

Improper Privilege Management

Published: Feb 14, 2023 | Modified: Feb 23, 2023
CVSS 3.x
8.7
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Azure_app_service_on_azure_stack Microsoft - (including) - (including)

Potential Mitigations

References