CVE-2021-26859HighCVSS 7.7

Microsoft Power BI Information Disclosure Vulnerability

Published
March 9, 2021
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

What type of information could be disclosed by this vulnerability? Exploiting this vulnerability could allow the disclosure of NTLM hashes.

🎯 Affected products2

  • Power BI Report Server version 15.0.1103.234
  • Power BI Report Server version 15.0.1104.300

✅ Remediation

KB5001284 (Security Update) — fixed build 1.8.7485.35104 KB5001285 (Security Update) — fixed build 1.9.7675.15620

🔗 References (5)