Elevation of Privilege Vulnerability in Azure Billing by Microsoft
CVE-2026-62874

10CRITICAL

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
17 September 2026

What is CVE-2026-62874?

The Azure Billing service contains a vulnerability that compromises the verification of data authenticity. This flaw could allow an unauthorized individual to gain elevated privileges across the network, potentially leading to unauthorized access to sensitive data and operations. It is crucial for users of this service to stay updated with security patches and best practices to mitigate the risk of exploitation. For more details, refer to the vendor advisory.

Affected Version(s)

Azure Billing -

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.