Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Dcmattyg

#29411of 56,330
9.1Total CVSS
Vulnerabilities · 1
PT-2024-18988
9.1
2024-01-10
Microsoft · Azure Ipam · CVE-2024-21638
**Name of the Vulnerable Software and Affected Versions** Azure IPAM versions prior to 3.0.0 **Description** The issue concerns the lack of validation of the passed-in authentication token in Azure IPAM, which may allow an attacker to impersonate any privileged user and access data stored within the IPAM instance and subsequently from Azure, resulting in an elevation of privilege. **Recommendations** For versions prior to 3.0.0, update to version 3.0.0 to resolve the issue.