PT-2025-36100 · Microsoft · Azure Bot Service

Bountyplz

·

Published

2025-09-04

·

Updated

2025-10-17

·

CVE-2025-55244

CVSS v3.1
9.0
VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Azure Bot Service (affected versions not specified)
Description An elevation of privilege issue exists within the Azure Bot Service. This allows for unauthorized privilege escalation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2025-11133
CVE-2025-55244

Affected Products

Azure Bot Service