Filtered by vendor Microsoft Subscriptions
Filtered by product Azure Active Directory Connect Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-36949 1 Microsoft 2 Azure Active Directory Connect, Azure Active Directory Connect Provisioning Agent 2024-11-21 7.1 High
Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability
CVE-2019-1000 1 Microsoft 1 Azure Active Directory Connect 2024-11-21 N/A
An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect build 1.3.20.0, which allows an attacker to execute two PowerShell cmdlets in context of a privileged account, and perform privileged actions.To exploit this, an attacker would need to authenticate to the Azure AD Connect server, aka 'Microsoft Azure AD Connect Elevation of Privilege Vulnerability'.
CVE-2017-8613 1 Microsoft 1 Azure Active Directory Connect 2024-11-21 N/A
Azure AD Connect Password writeback, if misconfigured during enablement, allows an attacker to reset passwords and gain unauthorized access to arbitrary on-premises AD privileged user accounts aka "Azure AD Connect Elevation of Privilege Vulnerability."