Microsoft Defender For Endpoint For Linux vulnerabilities

7 known vulnerabilities affecting microsoft/microsoft_defender_for_endpoint_for_linux.

Total CVEs
7
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM5

Vulnerabilities

Page 1 of 1
CVE-2026-21537HIGHCVSS 8.8≥ 101.0.0, < 1.0.9.02026-02-10
CVE-2026-21537 [HIGH] CWE-94 CVE-2026-21537: Improper control of generation of code ('code injection') in Microsoft Defender for Linux allows an Improper control of generation of code ('code injection') in Microsoft Defender for Linux allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2025-59497MEDIUMCVSS 4.7≥ 101.0.0, < 101.25032.00102025-10-14
CVE-2025-59497 [MEDIUM] CWE-367 CVE-2025-59497: Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Linux allows an authoriz Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Linux allows an authorized attacker to deny service locally.
nvd
CVE-2025-47161HIGHCVSS 7.8PoC≥ 101.0.0, < 101.25022.00022025-05-15
CVE-2025-47161 [HIGH] CWE-284 CVE-2025-47161: Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-26684MEDIUMCVSS 6.7≥ 101.0.0, < 101.25032.00102025-05-13
CVE-2025-26684 [MEDIUM] CWE-73 CVE-2025-26684: External control of file name or path in Microsoft Defender for Endpoint allows an authorized attack External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-43614MEDIUMCVSS 5.5≥ 101.0.0, < 101.24052.00022024-10-08
CVE-2024-43614 [MEDIUM] CWE-23 CVE-2024-43614: Relative path traversal in Microsoft Defender for Endpoint allows an authorized attacker to perform Relative path traversal in Microsoft Defender for Endpoint allows an authorized attacker to perform spoofing locally.
nvd
CVE-2022-33637MEDIUMCVSS 6.5≥ 101.0.0, < 101.68.802022-07-12
CVE-2022-33637 [MEDIUM] CVE-2022-33637: Microsoft Defender for Endpoint Tampering Vulnerability Microsoft Defender for Endpoint Tampering Vulnerability
nvd
CVE-2022-23278MEDIUMCVSS 5.9≥ 101.0.0, < 101.60.932022-03-09
CVE-2022-23278 [MEDIUM] CVE-2022-23278: Microsoft Defender for Endpoint Spoofing Vulnerability Microsoft Defender for Endpoint Spoofing Vulnerability
nvd