PT-2026-4311 · Microsoft · Azure Entra Id

Karel Rymes

+1

·

Published

2026-01-22

·

Updated

2026-02-03

·

CVE-2026-24305

CVSS v3.1

9.3

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions Azure Entra ID (affected versions not specified)
Description An elevation of privilege issue exists in Azure Entra ID. Successful exploitation could allow unauthorized access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Improper Authorization

Weakness Enumeration

Related Identifiers

BDU:2026-00837
CVE-2026-24305

Affected Products

Azure Entra Id