Microsoft Airlift Authentication Bypass Vulnerability
CVE-2024-49056 Published on November 12, 2024

Airlift.microsoft.com Elevation of Privilege Vulnerability
Authentication bypass by assumed-immutable data on airlift.microsoft.com allows an authorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

Authentication Bypass by Assumed-Immutable Data

The authentication scheme or implementation uses key data elements that are assumed to be immutable, but can be controlled or modified by the attacker.


Products Associated with CVE-2024-49056

Want to know whenever a new CVE is published for Airlift Microsoft Com? stack.watch will email you.

 

Affected Versions

airlift.microsoft.com Version N/A is affected by CVE-2024-49056

Exploit Probability

EPSS
2.45%
Percentile
85.12%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.