CVE-2025-29827
Published May 8, 2025Improper authorization in Azure Automation allows an authorized attacker to elevate privileges over a network.
- evidence mentions
- 1
- Buzz score
- 11.9
Vendor/product archive
4 CVEs tagged to microsoft / azure_automation — 1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.
Improper authorization in Azure Automation allows an authorized attacker to elevate privileges over a network.
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
An information disclosure vulnerability manifests when a user or an application uploads unprotected private key data as part of an authentication certificate keyCredential on an…
An elevation of privilege vulnerability exists in Azure Automation "RunAs account" runbooks for users with contributor role, aka 'Azure Automation Elevation of Privilege Vulnerabi…