Improper input validation in Azure Local allows an authorized attacker to elevate privileges locally.
Metrics
Affected Vendors & Products
References
History
Fri, 16 Jan 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft azure Stack Hci 22h2 Microsoft azure Stack Hci 23h2 |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:microsoft:azure_stack_hci_22h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:azure_stack_hci_23h2:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft
Microsoft azure Stack Hci 22h2 Microsoft azure Stack Hci 23h2 |
Tue, 08 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Apr 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in Azure Local allows an authorized attacker to elevate privileges locally. | |
| Title | Azure Local Elevation of Privilege Vulnerability | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2025-06-04T17:53:15.948Z
Reserved: 2025-02-26T14:42:05.978Z
Link: CVE-2025-27489
Updated: 2025-04-08T19:33:17.654Z
Status : Analyzed
Published: 2025-04-08T18:15:59.787
Modified: 2026-01-16T14:10:30.120
Link: CVE-2025-27489
No data.
OpenCVE Enrichment
No data.