Assigner | microsoft |
Reserved | 2024-03-13 |
Published | 2024-04-09 |
Updated | 2024-07-05 |
Description
Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C |
Problem types
CWE-284: Improper Access Control
Product status
1.0.0 before 1.0.2620-162
1.0.0 before 0.3.0-preview
1.0.0 before 5.1.3
1.0.0 before 5.0.5
1.0.0 before 1.1.2
1.0.0 before 1.5.2
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28917 (Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability)