Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dcmattyg

#27989of 53,625
9.1Total CVSS
Vulnerabilities · 1
PT-2024-18988
9.1
2024-01-10
Microsoft · Azure Ipam · CVE-2024-21638
**Name of the Vulnerable Software and Affected Versions** Azure IPAM versions prior to 3.0.0 **Description** The issue concerns the lack of validation of the passed-in authentication token in Azure IPAM, which may allow an attacker to impersonate any privileged user and access data stored within the IPAM instance and subsequently from Azure, resulting in an elevation of privilege. **Recommendations** For versions prior to 3.0.0, update to version 3.0.0 to resolve the issue.