CVE-2025-59285
published 2025-10-14CVE-2025-59285: Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.
PriorityP337high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.73%
49.9th percentile
Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | azure_monitor | >= 1.0.0 < 1.36.3 | 1.36.3 |
| microsoft | azure_monitor_agent | < 1.36.3 | 1.36.3 |
| msrc | azure_monitor_agent | — | — |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
vendor_msrc7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mqgx-rqhv-mg4p: Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally
ghsa_unreviewed·2025-10-14
CVE-2025-59285 [HIGH] CWE-502 GHSA-mqgx-rqhv-mg4p: Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally
Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.
Microsoft
Azure Monitor Agent Elevation of Privilege Vulnerability
vendor_msrc·2025-10-14·CVSS 7.0
CVE-2025-59285 [HIGH] CWE-502 Azure Monitor Agent Elevation of Privilege Vulnerability
Azure Monitor Agent Elevation of Privilege Vulnerability
Description: Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.
FAQ: According to the CVSS metric, the attack vector is local (AV:L) and the privilege required is none (PR:L). What privileges could an attacker gain with successful exploitation?
A local user could take advantage of this vulnerability and perform elevation of privilege (EOP). By successfully exploiting this vulnerability, the attacker could elevate their privileges to obtain root level access on the virtual machine.
FAQ: According to the CVSS metric, the attack complexity is high (AC:H). What is does this mean in the context of the elevation of privilege vulnerability?
In order to successfully exploi
No detection rules found.
No public exploits indexed.
Bleepingcomputer
Microsoft October 2025 Patch Tuesday fixes 6 zero-days, 172 flaws
blogs_bleepingcomputer·2025-10-14·CVSS 7.8
[HIGH] Microsoft October 2025 Patch Tuesday fixes 6 zero-days, 172 flaws
## Microsoft October 2025 Patch Tuesday fixes 6 zero-days, 172 flaws
## Lawrence Abrams
80 Elevation of Privilege Vulnerabilities
11 Security Feature Bypass Vulnerabilities
31 Remote Code Execution Vulnerabilities
28 Information Disclosure Vulnerabilities
11 Denial of Service Vulnerabilities
10 Spoofing Vulnerabilities
When BleepingComputer reports on the Patch Tuesday security updates, we only count those released today by Microsoft. Therefore, the number of flaws does not include those fixed in Azure, Mariner, Microsoft Edge, and other vulnerabilities earlier this month.
Notably, Windows 10 reaches the end of support today , with this being the last Patch Tuesday where Microsoft provides free security updates to the venerable operating system.
To continue receiving security upd
Wiz
CVE-2025-62550 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-62550 [HIGH] CVE-2025-62550 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-62550 :
Azure Monitor agent vulnerability analysis and mitigation
Out-of-bounds write in Azure Monitor Agent allows an authorized attacker to execute code over a network.
Source : NVD
## 8.8
Score
Published December 9, 2025
Severity HIGH
CNA Score 8.8
Affected Technologies
Azure Monitor agent
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 28.2
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
cpe:2.3:a:microsoft:azure_monitor_agent
Sources
Linux Severity HIGH Has Fix Added at: Dec 11, 2025
Windows Severity HIGH Has Fix Added at: Dec 11, 2025
Linux Severity HIGH Has Fix Added at: Dec 12, 2025
Windows Severity HIGH Has Fix Added at: Dec 12, 2025
#
2025-10-14
Published