cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-29990,https://securityvulnerability.io/vulnerability/CVE-2024-29990,Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability,"A vulnerability in Microsoft Azure Kubernetes Service allows for elevation of privilege within confidential containers. This issue could lead to unauthorized access and manipulation of sensitive data, posing risks to security integrity. Organizations utilizing Azure Kubernetes Service should prioritize this vulnerability, as it may affect system operations and data confidentiality. The specific attack vector involves the exploitation of misconfigurations or inadequate validation processes within the service.",Microsoft,Azure Kubernetes Service,9,CRITICAL,0.0004299999854993075,false,true,false,true,,false,false,2024-04-09T17:00:36.373Z,0 CVE-2024-21400,https://securityvulnerability.io/vulnerability/CVE-2024-21400,Confidential Container Elevation of Privilege Vulnerability,"The vulnerability in Microsoft Azure Kubernetes Service relates to the elevation of privilege in confidential containers, allowing unauthorized users potentially to gain elevated access to otherwise restricted resources. This can lead to significant security risks if exploited, making it crucial for organizations utilizing Azure Kubernetes Service to apply necessary patches and updates promptly. Effective configuration and regular updates are essential steps in mitigating this risk and securing cloud infrastructures.",Microsoft,Azure Kubernetes Service,9,CRITICAL,0.0005300000193528831,false,false,false,true,true,false,false,2024-03-12T16:57:58.625Z,0 CVE-2024-21403,https://securityvulnerability.io/vulnerability/CVE-2024-21403,Confidential Container Elevation of Privilege Vulnerability,The vulnerability identified in Microsoft Azure Kubernetes Service allows for the elevation of privilege within confidential containers. This vulnerability can be potentially exploited by attackers to gain unauthorized access to sensitive information or perform actions beyond their intended permissions. This underscores the importance of implementing effective security measures within cloud environments to safeguard against potential breaches and maintain the integrity of containerized applications.,Microsoft,Azure Kubernetes Service,9,CRITICAL,0.0005300000193528831,false,false,false,false,,false,false,2024-02-13T18:02:46.888Z,0 CVE-2024-21376,https://securityvulnerability.io/vulnerability/CVE-2024-21376,Confidential Container Remote Code Execution Vulnerability,"A remote code execution vulnerability exists in Microsoft Azure Kubernetes Service, specifically affecting the Confidential Container feature. This vulnerability may allow an attacker to execute arbitrary code on the host operating system of the Kubernetes cluster. A successful exploitation can lead to unauthorized access and control over sensitive data and applications running in compromised containers. Organizations utilizing Microsoft Azure Kubernetes Service should prioritize patching and configuring their systems appropriately to mitigate associated risks. For further insights, you can refer to the Microsoft Advisory at: [Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21376).",Microsoft,Azure Kubernetes Service,9,CRITICAL,0.0005300000193528831,false,false,false,false,,false,false,2024-02-13T18:02:41.796Z,0 CVE-2023-29332,https://securityvulnerability.io/vulnerability/CVE-2023-29332,Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability,Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability,Microsoft,Azure Kubernetes Service,7.5,HIGH,0.0025599999353289604,false,false,false,false,,false,false,2023-09-12T17:15:00.000Z,0 CVE-2021-27075,https://securityvulnerability.io/vulnerability/CVE-2021-27075,Azure Virtual Machine Information Disclosure Vulnerability,Azure Virtual Machine Information Disclosure Vulnerability,Microsoft,"Azure Service Fabric,Azure Spring Cloud,Azure Container Instance,Azure Kubernetes Service",6.8,MEDIUM,0.0006099999882280827,false,false,false,false,,false,false,2021-03-11T15:50:50.000Z,0 CVE-2021-24109,https://securityvulnerability.io/vulnerability/CVE-2021-24109,Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability,Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability,Microsoft,Microsoft Azure Kubernetes Service,6.8,MEDIUM,0.0017399999778717756,false,false,false,false,,false,false,2021-02-25T23:01:56.000Z,0 CVE-2021-1677,https://securityvulnerability.io/vulnerability/CVE-2021-1677,Azure Active Directory Pod Identity Spoofing Vulnerability,Azure Active Directory Pod Identity Spoofing Vulnerability,Microsoft,Microsoft Azure Kubernetes Service,5.5,MEDIUM,0.0012000000569969416,false,false,false,false,,false,false,2021-01-12T19:42:19.000Z,0