PT-2025-42152 · Microsoft · Azure Container Instance

Published

2025-10-14

·

Updated

2025-10-17

·

CVE-2025-59292

CVSS v3.1

8.2

High

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Azure Container Instances (ACI) (affected versions not specified)
Description An issue exists in Azure Container Instances where external control of file names or paths can allow an authorized attacker to elevate privileges locally. The vulnerability involves manipulation of file paths or names during container deployment or management.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2025-12998
CVE-2025-59292

Affected Products

Azure Container Instance