PT-2022-6227 · Microsoft · Azure Service Fabric Container

David Fiser

+1

·

Published

2022-09-20

·

Updated

2024-05-29

·

CVE-2023-21531

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Azure Service Fabric Container (affected versions not specified)
Description The issue is related to the Azure Service Fabric Container and involves an elevation of privilege vulnerability. This vulnerability is associated with the WAagent daemon and its insecure management of privileges. Exploitation of this issue could allow an attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2023-00536
CVE-2023-21531
ZDI-23-002

Affected Products

Azure Service Fabric Container