CVE-2024-43477CriticalCVSS 7.5

Microsoft Entra ID Elevation of Privilege Vulnerability

Published
August 22, 2024
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

Improper access control in Decentralized Identity Services resulted in a vulnerability that allows an unauthenticated attacker to disable Verifiable ID's on another tenant.

🎯 Affected products1

  • Microsoft Entra ID

🔗 References (1)