CVE-2024-38220

Severity
9.0CRITICAL
EPSS
0.8%
top 25.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 10

Description

Azure Stack Hub Elevation of Privilege Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:HExploitability: 2.3 | Impact: 6.0

Affected Packages2 packages

CVEListV5microsoft/azure_stack_hub1.0.01.2406.1.15
NVDmicrosoft/azure_stack_hub< 1.2311.1.22

Patches

🔴Vulnerability Details

2
GHSA
GHSA-534f-hj89-3j8f: Azure Stack Hub Elevation of Privilege Vulnerability2024-09-10
CVEList
Azure Stack Hub Elevation of Privilege Vulnerability2024-09-10

📋Vendor Advisories

1
Microsoft
Azure Stack Hub Elevation of Privilege Vulnerability2024-09-10
CVE-2024-38220 (CRITICAL CVSS 9) | Azure Stack Hub Elevation of Privil | cvebase.io