Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2024-29992: Azure Identity Library for .NET Information Disclosure Vulnerability

What type of information could be disclosed by this vulnerability?

The type of information that could be disclosed if an attacker successfully exploited this vulnerability is data inside the targeted website like IDs, tokens, nonces, and other sensitive information.

Which credential types provided by the Azure Identity client library are affected?

The vulnerability exists in the following credential types:

  1. DefaultAzureCredential
  2. ManagedIdentityCredential
Microsoft Security Response Center
#vulnerability#web#Azure SDK#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2024-38016: Microsoft Office Visio Remote Code Execution Vulnerability