Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
oryginał ENCVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:LMicrosoft Azure Kubernetes Service
APPMicrosoftwszystkie wersje
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
Container
CWE
Powiązane podatności
CVE-2026-56163CRITICAL10.0PL ✓ten sam produkt
Brak uwierzytelnienia w Microsoft Azure Kubernetes Service — privilege escalation
CVE-2026-33105CRITICAL10.0PL ✓ten sam produkt
Nieprawidłowa autoryzacja w Microsoft Azure Kubernetes Service — eskalacja uprawnień
CVE-2024-21376CRITICAL9.0PL ✓ten sam produkt
RCE w Microsoft Azure Kubernetes Service Confidential Containers
CVE-2024-21403CRITICAL9.0PL ✓ten sam produkt
Privilege escalation w Azure Kubernetes Service Confidential Containers
CVE-2023-29332HIGH7.5ten sam produkt
Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability