cbcvebase.
CVE-2025-49731
published 2025-07-08

CVE-2025-49731: Improper handling of insufficient permissions or privileges in Microsoft Teams allows an authorized attacker to elevate privileges over a network.

low3.1CVSS 3.1
AVNACHPRLUINSUCLINAN
Improper handling of insufficient permissions or privileges in Microsoft Teams allows an authorized attacker to elevate privileges over a network.

Affected

8 ranges
VendorProductVersion rangeFixed in
microsoftmicrosoft_teams_for_android>= 1.0.0 < 1.0.0.20251129021.0.0.2025112902
microsoftmicrosoft_teams_for_desktop>= 1.0.0 < 2506021264325060212643
microsoftmicrosoft_teams_for_ios>= 2.0.0 < 7.10.1 (100772025102901)7.10.1 (100772025102901)
microsoftteams< 1.0.0.20251129021.0.0.2025112902
microsoftteams< 7.10.17.10.1
msrcmicrosoft_teams_for_android
msrcmicrosoft_teams_for_desktop
msrcmicrosoft_teams_for_ios