Elevation of Privilege Vulnerability in Microsoft Azure Active Directory Connect
CVE-2019-1000
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 16 May 2019
What is CVE-2019-1000?
An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect, specifically in version 1.3.20.0. This flaw allows attackers who have authenticated access to execute two PowerShell cmdlets with elevated privileges. By leveraging this vulnerability, attackers can execute privileged actions within the Azure AD Connect environment, potentially leading to greater access and control over the organizational resources managed by Azure Active Directory. Organizations using this version should take immediate measures to apply patches and restrict access to mitigate the risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Microsoft Azure Active Directory Connect = unspecified
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved