Skip to main content

Vendor/product archive

microsoft / azure_monitor_agent CVEs

Beta · best-effort

14 CVEs tagged to microsoft / azure_monitor_agent0 Critical, 13 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2026-47299

Published Aug 11, 2026

Improper neutralization of special elements used in a command ('command injection') in Azure Monitor Agent allows an authorized attacker to elevate privileges over a network.

CVSS 7.2 · High
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2026-42830

Published May 12, 2026

Untrusted search path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-32192

Published Apr 14, 2026

Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-32168

Published Apr 14, 2026

Improper input validation in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2025-59504

Published Nov 11, 2025

Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.

CVSS 7.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-59494

Published Oct 14, 2025

Improper access control in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-59285

Published Oct 14, 2025

Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.

CVSS 7.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-47988

Published Jul 8, 2025

Improper control of generation of code ('code injection') in Azure Monitor Agent allows an unauthorized attacker to execute code over an adjacent network.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-14 of 14 CVEsPage 1 of 1