cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-38220,https://securityvulnerability.io/vulnerability/CVE-2024-38220,Azure Stack Hub Elevation of Privilege Vulnerability,"The vulnerability identified in Azure Stack Hub allows an attacker to elevate their privileges within the system. This issue could enable unauthorized access to sensitive functionalities, posing a significant risk to enterprise workloads. Organizations utilizing Azure Stack Hub should assess their environments for potential exposure and implement necessary mitigation strategies as outlined in Microsoft’s advisory.",Microsoft,Azure Stack Hub,9,CRITICAL,0.0004400000034365803,false,false,false,false,,false,false,2024-09-10T16:53:42.438Z,0 CVE-2024-38216,https://securityvulnerability.io/vulnerability/CVE-2024-38216,Azure Stack Hub Elevation of Privilege Vulnerability,"The Azure Stack Hub is susceptible to an elevation of privilege vulnerability, which could enable an attacker to gain unauthorized access to sensitive data and functions. This may occur due to improper validation of user permissions within the platform. Administrators are urged to apply necessary security updates to mitigate potential risks associated with this vulnerability. For more information, refer to the vendor advisory.",Microsoft,Azure Stack Hub,9,CRITICAL,0.0004400000034365803,false,false,false,false,,false,false,2024-09-10T16:53:41.902Z,0 CVE-2024-38201,https://securityvulnerability.io/vulnerability/CVE-2024-38201,Azure Stack Hub Elevation of Privilege Vulnerability,"The vulnerability presents an elevation of privilege issue within Azure Stack Hub, impacting the integrity of user permissions. An attacker with access to the affected system may exploit this vulnerability to gain elevated access rights that would allow them to execute commands and access restricted areas of the environment. This exploitation can compromise sensitive information and potentially disrupt operations. Users are encouraged to review security measures and updates addressing this vulnerability to mitigate associated risks.",Microsoft,Azure Stack Hub,7,HIGH,0.0005000000237487257,false,false,false,false,,false,false,2024-08-13T17:29:55.880Z,0 CVE-2024-38108,https://securityvulnerability.io/vulnerability/CVE-2024-38108,Azure Stack Hub Spoofing Vulnerability,"A spoofing vulnerability exists in Azure Stack Hub, allowing an attacker to manipulate or masquerade as legitimate users or services within the system. This vulnerability can lead to unauthorized access and potentially harmful actions that could affect data integrity and confidentiality. Implementing security measures and staying updated with Microsoft’s advisories is crucial for protecting your Azure Stack Hub environment from such threats.",Microsoft,Azure Stack Hub,9.3,CRITICAL,0.0015999999595806003,false,false,false,false,,false,false,2024-08-13T17:29:45.168Z,0 CVE-2024-20679,https://securityvulnerability.io/vulnerability/CVE-2024-20679,Azure Stack Hub Spoofing Vulnerability,Azure Stack Hub Spoofing Vulnerability,Microsoft,Azure Stack Hub,6.5,MEDIUM,0.0007099999929778278,false,false,false,false,,false,false,2024-02-13T18:02:26.447Z,0 CVE-2023-21777,https://securityvulnerability.io/vulnerability/CVE-2023-21777,Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability,Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability,Microsoft,Azure App Service On Azure Stack Hub,8.7,HIGH,0.0006099999882280827,false,false,false,false,,false,false,2023-02-14T20:15:00.000Z,0 CVE-2022-29149,https://securityvulnerability.io/vulnerability/CVE-2022-29149,Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability,Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability,Microsoft,"Azure Automation State Configuration, Dsc Extension,Azure Automation Update Management,Log Analytics Agent,Azure Diagnostics (lad),Container Monitoring Solution,Azure Security Center,Azure Sentinel,Azure Stack Hub,Open Management Infrastructure,System Center Operations Manager (scom) 2022,System Center Operations Manager (scom) 2019,System Center Operations Manager (scom) 2016",7.8,HIGH,0.0006699999794363976,false,false,false,false,,false,false,2022-06-15T21:51:17.000Z,0 CVE-2021-38649,https://securityvulnerability.io/vulnerability/CVE-2021-38649,Open Management Infrastructure Elevation of Privilege Vulnerability,Open Management Infrastructure Elevation of Privilege Vulnerability,Microsoft,"Open Management Infrastructure,System Center Operations Manager (scom),Azure Automation State Configuration, Dsc Extension,Azure Automation Update Management,Log Analytics Agent,Azure Diagnostics (lad),Container Monitoring Solution,Azure Security Center,Azure Sentinel,Azure Stack Hub",7,HIGH,0.000590000010561198,true,false,false,true,,false,false,2021-09-15T11:24:09.000Z,0 CVE-2021-38648,https://securityvulnerability.io/vulnerability/CVE-2021-38648,Open Management Infrastructure Elevation of Privilege Vulnerability,Open Management Infrastructure Elevation of Privilege Vulnerability,Microsoft,"Open Management Infrastructure,System Center Operations Manager (scom),Azure Automation State Configuration, Dsc Extension,Azure Automation Update Management,Log Analytics Agent,Azure Diagnostics (lad),Container Monitoring Solution,Azure Security Center,Azure Sentinel,Azure Stack Hub",7.8,HIGH,0.9582399725914001,true,false,false,true,,false,false,2021-09-15T11:24:08.000Z,0 CVE-2021-38647,https://securityvulnerability.io/vulnerability/CVE-2021-38647,Open Management Infrastructure Remote Code Execution Vulnerability,Open Management Infrastructure Remote Code Execution Vulnerability,Microsoft,"Open Management Infrastructure,System Center Operations Manager (scom),Azure Automation State Configuration, Dsc Extension,Azure Automation Update Management,Log Analytics Agent,Azure Diagnostics (lad),Container Monitoring Solution,Azure Security Center,Azure Sentinel,Azure Stack Hub",9.8,CRITICAL,0.9731600284576416,true,false,true,true,true,false,false,2021-09-15T11:24:07.000Z,0 CVE-2021-38645,https://securityvulnerability.io/vulnerability/CVE-2021-38645,Open Management Infrastructure Elevation of Privilege Vulnerability,Open Management Infrastructure Elevation of Privilege Vulnerability,Microsoft,"Open Management Infrastructure,System Center Operations Manager (scom),Azure Automation State Configuration, Dsc Extension,Azure Automation Update Management,Log Analytics Agent,Azure Diagnostics (lad),Container Monitoring Solution,Azure Security Center,Azure Sentinel,Azure Stack Hub",7.8,HIGH,0.000590000010561198,true,false,false,true,,false,false,2021-09-15T11:24:05.000Z,0