Microsoft Azure CycleCloud是美国微软(Microsoft)公司的一套企业级友好的工具,用于协调和管理 Azure 上的高性能计算 (HPC) 环境。 Microsoft Azure CycleCloud存在代码注入漏洞。攻击者利用该漏洞可以远程执行代码。以下产品和版本受到影响:Azure CycleCloud 8.2.0,Azure CycleCloud 8.0.0,Azure CycleCloud 8.6.0,Azure CycleCloud 8.0.1,Azure Cycle
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Azure CycleCloud | 8.6.0< 8.6.4 |
affected |
8.6.3< 8.6.4 |
affected | ||
| Microsoft | Azure CycleCloud 8.0.0 | 8.0.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.0.1 | 8.0.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.0.2 | 8.0.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.1.0 | 8.1.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.1.1 | 8.1.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.2.0 | 8.2.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.2.1 | 8.2.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.2.2 | 8.2.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.3.0 | 8.3.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.4.0 | 8.4.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.4.1 | 8.4.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.4.2 | 8.4.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.5.0 | 8.5.0< 8.6.4 |
affected |
| Microsoft | Azure CycleCloud 8.6.0 | 8.6.0< 8.6.4 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Azure CycleCloud | 8.6.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud | 8.6.3 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.0.0 | 8.0.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.0.1 | 8.0.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.0.2 | 8.0.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.1.0 | 8.1.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.1.1 | 8.1.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.2.0 | 8.2.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.2.1 | 8.2.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.2.2 | 8.2.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.3.0 | 8.3.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.4.0 | 8.4.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.4.1 | 8.4.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.4.2 | 8.4.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.5.0 | 8.5.0 ~ 8.6.4 | - |
|
| Microsoft | Azure CycleCloud 8.6.0 | 8.6.0 ~ 8.6.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-43491 | 9.8 CRITICAL | Microsoft Windows Update Remote Code Execution Vulnerability |
| CVE-2024-38220 | 9.0 CRITICAL | Azure Stack Hub Elevation of Privilege Vulnerability |
| CVE-2024-38259 | 8.8 HIGH | Microsoft Management Console Remote Code Execution Vulnerability |
| CVE-2024-37335 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-37340 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-37339 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-26186 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-38018 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2024-26191 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-37341 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2024-37965 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2024-38225 | 8.8 HIGH | Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability |
| CVE-2024-43461 | 8.8 HIGH | Windows MSHTML Platform Spoofing Vulnerability |
| CVE-2024-37338 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-43455 | 8.8 HIGH | Windows Remote Desktop Licensing Service Spoofing Vulnerability |
| CVE-2024-38260 | 8.8 HIGH | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
| CVE-2024-37980 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2024-43479 | 8.5 HIGH | Microsoft Power Automate Desktop Remote Code Execution Vulnerability |
| CVE-2024-38194 | 8.4 HIGH | Azure Web Apps Elevation of Privilege Vulnerability |
| CVE-2024-38216 | 8.2 HIGH | Azure Stack Hub Elevation of Privilege Vulnerability |
Showing top 20 of 79 CVEs. View all on vendor page → →
No comments yet