PT-2023-2103 · Microsoft · Onedrive For Macos+1

Koh M. Nakagawa

·

Published

2023-03-14

·

Updated

2024-05-29

·

CVE-2023-24930

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OneDrive for Windows (affected versions not specified) OneDrive for MacOS (affected versions not specified)
Description The issue is related to insufficient access restrictions in the file hosting service, which can be exploited by an attacker to elevate their privileges using a specially crafted application.
Recommendations For OneDrive for Windows, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For OneDrive for MacOS, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Link Following

Weakness Enumeration

Related Identifiers

BDU:2023-01840
CVE-2023-24930

Affected Products

Onedrive For Macos
Onedrive For Windows