PT-2025-51682 · Microsoft · Teams Admin Center+1
Published
2025-12-16
·
Updated
2025-12-16
·
CVE-2025-14432
CVSS v4.0
8.1
High
| Vector | AV:N/AC:L/AT:N/PR:H/UI:A/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Teams versions (affected versions not specified)
Description
In limited scenarios, sensitive data may be written to a log file when an administrator uses the Microsoft Teams Admin Center (TAC) to make device configuration changes. Access to this log file is restricted to users with administrative privileges. This issue is limited to Microsoft TAC and does not impact configuration changes made through the provisioning server or the device WebUI.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Insertion into Log File
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Teams
Teams Admin Center