CVE Vulnerabilities

CVE-2025-21199

Improper Privilege Management

Published: Mar 11, 2025 | Modified: Jul 07, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

NameVendorStart VersionEnd Version
Azure_agentMicrosoft*2.0.9940.0 (excluding)
Azure_agentMicrosoft*9.30 (excluding)

Potential Mitigations

References