CVE Vulnerabilities

CVE-2025-21199

Improper Privilege Management

Published: Mar 11, 2025 | Modified: Jul 07, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Azure_agent Microsoft * 2.0.9940.0 (excluding)
Azure_agent Microsoft * 9.30 (excluding)

Potential Mitigations

References