Microsoft Entra是美国Microsoft公司的一款身份与访问管理系统。 Microsoft Entra存在安全漏洞,该漏洞源于授权不当。攻击者利用该漏洞可以提升权限。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft Entra | - |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Entra | - | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-24306 | 9.8 CRITICAL | Azure Front Door Elevation of Privilege Vulnerability |
| CVE-2026-21264 | 9.3 CRITICAL | Microsoft Account Spoofing Vulnerability |
| CVE-2026-24307 | 9.3 CRITICAL | M365 Copilot Information Disclosure Vulnerability |
| CVE-2026-21227 | 8.2 HIGH | Azure Logic Apps Elevation of Privilege Vulnerability |
| CVE-2026-21520 | 7.5 HIGH | Copilot Studio Information Disclosure Vulnerability |
| CVE-2026-21521 | 7.4 HIGH | Word Copilot Information Disclosure Vulnerability |
| CVE-2026-21524 | 7.4 HIGH | Azure Data Explorer Information Disclosure Vulnerability |
No comments yet