Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.
History

Fri, 05 Jun 2026 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft azure Horizondb
CPEs cpe:2.3:a:microsoft:azure_horizondb:-:*:*:*:*:*:*:*
Vendors & Products Microsoft azure Horizondb

Fri, 05 Jun 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 05 Jun 2026 08:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft .azure Horizondb
Vendors & Products Microsoft .azure Horizondb

Thu, 04 Jun 2026 22:45:00 +0000

Type Values Removed Values Added
Description Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.
Title Azure HorizonDB Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft .azure Horizondb
Weaknesses CWE-290
CPEs cpe:2.3:a:microsoft:.azure_horizonDB:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft .azure Horizondb
References
Metrics cvssV3_1

{'score': 10, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H/E:U/RL:O/RC:C'}


cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published: 2026-06-04T22:00:47.598Z

Updated: 2026-06-10T17:55:18.819Z

Reserved: 2026-05-21T20:00:35.245Z

Link: CVE-2026-48567

cve-icon Vulnrichment

Updated: 2026-06-05T10:48:59.346Z

cve-icon NVD

Status : Analyzed

Published: 2026-06-04T23:17:32.677

Modified: 2026-06-05T16:30:23.133

Link: CVE-2026-48567

cve-icon Redhat

No data.