CVE-2024-28917
09.04.2024, 17:15
Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege VulnerabilityEnginsight
| Vendor | Product | Version |
|---|---|---|
| microsoft | azure_arc_extension_microsoft.azstackhci.operator | 1.0.0 ≤ 𝑥 < 5.0.5 |
| microsoft | azure_arc_extension_microsoft.azure.hybridnetwork | 1.0.0 ≤ 𝑥 < 1.0.2620-162 |
| microsoft | azure_arc_extension_microsoft.azurekeyvaultsecretsprovider | 1.0.0 ≤ 𝑥 < 1.5.2 |
| microsoft | azure_arc_extension_microsoft.iotoperations.mq | 𝑥 < 0.3.0-preview |
| microsoft | azure_arc_extension_microsoft.networkfabricserviceextension | 1.0.0 ≤ 𝑥 < 5.1.3 |
| microsoft | azure_arc_extension_microsoft.openservicemesh | 1.0.0 ≤ 𝑥 < 1.2.6 |
| microsoft | azure_arc_extension_microsoft.videoindexer | 1.0.0 ≤ 𝑥 < 1.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration