Local Elevation of Privilege in Azure by Microsoft
CVE-2025-27489
7.8HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 8 April 2025
What is CVE-2025-27489?
An improper input validation vulnerability exists in Azure Local, enabling an authorized attacker to gain elevated privileges on the system. This flaw can potentially allow unauthorized actions, making it essential for users to address it promptly to secure their installations.
Affected Version(s)
Azure Stack HCI OS Unknown 10.0.25398.0 < 10.0.25398.1486
Azure Stack OS HCI Unknown 10.0.20349.0 < 10.0.20348.3328