CVE-2022-26898
published 2022-04-15CVE-2022-26898: Azure Site Recovery Remote Code Execution Vulnerability
PriorityP344high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
2.07%
79.2th percentile
Azure Site Recovery Remote Code Execution Vulnerability
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | azure_site_recovery | < 9.48 | 9.48 |
| microsoft | azure_site_recovery_vmware_to_azure | >= 9.0 < 9.48 | 9.48 |
| msrc | azure_site_recovery_vmware_to_azure | — | — |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vendor_msrc7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6f4p-554q-j3hv: Azure Site Recovery Remote Code Execution Vulnerability
ghsa_unreviewed·2022-04-16
CVE-2022-26898 [HIGH] GHSA-6f4p-554q-j3hv: Azure Site Recovery Remote Code Execution Vulnerability
Azure Site Recovery Remote Code Execution Vulnerability.
Microsoft
Azure Site Recovery Remote Code Execution Vulnerability
vendor_msrc·2022-04-12·CVSS 7.2
CVE-2022-26898 [HIGH] Azure Site Recovery Remote Code Execution Vulnerability
Azure Site Recovery Remote Code Execution Vulnerability
FAQ: What is Azure Site Recovery?
Azure Site Recovery helps ensure business continuity by keeping business apps and workloads running during outages. It is a service but also has a few on-premise components. Please visit this link for more details: About Azure Site Recovery - Azure Site Recovery
To what scenario does this vulnerability apply?
This vulnerability applies to a VMWare-to-Azure scenario. Please visit this link for more details: VMware VM disaster recovery architecture in Azure Site Recovery - Classic - Azure Site Recovery.
What can I do to protect myself from this vulnerability?
You can follow the steps here to update to version 9.48.
FAQ: According to the CVSS metric, privileges required is high (PR:H). What does that m
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-04-15
Published