Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Azure_command\-Line_interface
(Microsoft)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-11-14 | CVE-2023-36052 | Azure CLI REST Command Information Disclosure Vulnerability | Azure_command\-Line_interface | 8.6 | ||
2024-10-08 | CVE-2024-43591 | Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability | Azure_command\-Line_interface, Azure_service_connector | 9.1 | ||
2025-03-11 | CVE-2025-24049 | Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally. | Azure_command\-Line_interface | 8.4 | ||
2022-10-25 | CVE-2022-39327 | Azure CLI is the command-line interface for Microsoft Azure. In versions previous to 2.40.0, Azure CLI contains a vulnerability for potential code injection. Critical scenarios are where a hosting machine runs an Azure CLI command where parameter values have been provided by an external source. The vulnerability is only applicable when the Azure CLI command is run on a Windows machine and with any version of PowerShell and when the parameter value contains the `&` or `|` symbols. If any of... | Azure_command\-Line_interface | 9.8 |