Microsoft · Account · CVE-2025-21396
**Name of the Vulnerable Software and Affected Versions**
Microsoft Account (affected versions not specified)
**Description**
Missing authorization in Microsoft Account allows an unauthorized attacker to elevate privileges over a network. The issue is related to a CWE-862 authentication attack, which can be exploited by an unauthorized attacker to gain elevated privileges.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.