Логотип exploitDog
bind:CVE-2025-24989
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-24989

Количество 4

Количество 4

nvd логотип

CVE-2025-24989

6 месяцев назад

An improper access control vulnerability in Power Pages allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. This vulnerability has already been mitigated in the service and all affected customers have been notified. This update addressed the registration control bypass. Affected customers have been given instructions on reviewing their sites for potential exploitation and clean up methods. If you've not been notified this vulnerability does not affect you.

CVSS3: 8.2
EPSS: Низкий
msrc логотип

CVE-2025-24989

6 месяцев назад

Microsoft Power Pages Elevation of Privilege Vulnerability

EPSS: Низкий
github логотип

GHSA-pxjr-976r-24r6

6 месяцев назад

An improper access control vulnerability in Power Pages allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. This vulnerability has already been mitigated in the service and all affected cusomters have been notified. This update addressed the registration control bypass. Affected customers have been given instructions on reviewing their sites for potential exploitation and clean up methods. If you've not been notified this vulnerability does not affect you.

CVSS3: 8.2
EPSS: Низкий
fstec логотип

BDU:2025-01958

6 месяцев назад

Уязвимость программного обеспечения создания веб-сайтов Microsoft Power Pages, связанная с ошибками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-24989

An improper access control vulnerability in Power Pages allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. This vulnerability has already been mitigated in the service and all affected customers have been notified. This update addressed the registration control bypass. Affected customers have been given instructions on reviewing their sites for potential exploitation and clean up methods. If you've not been notified this vulnerability does not affect you.

CVSS3: 8.2
9%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-24989

Microsoft Power Pages Elevation of Privilege Vulnerability

9%
Низкий
6 месяцев назад
github логотип
GHSA-pxjr-976r-24r6

An improper access control vulnerability in Power Pages allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. This vulnerability has already been mitigated in the service and all affected cusomters have been notified. This update addressed the registration control bypass. Affected customers have been given instructions on reviewing their sites for potential exploitation and clean up methods. If you've not been notified this vulnerability does not affect you.

CVSS3: 8.2
9%
Низкий
6 месяцев назад
fstec логотип
BDU:2025-01958

Уязвимость программного обеспечения создания веб-сайтов Microsoft Power Pages, связанная с ошибками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 8.2
9%
Низкий
6 месяцев назад

Уязвимостей на страницу