Microsoft 365 Copilot Business Chat是美国Microsoft公司的一个AI聊天软件。 Microsoft 365 Copilot Business Chat存在代码问题漏洞,该漏洞源于服务端请求伪造,可能导致经过授权的攻击者通过网络提升权限。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft Exchange Online | - |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Exchange Online | - | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-32169 | 10.0 CRITICAL | Azure Cloud Shell Elevation of Privilege Vulnerability |
| CVE-2026-32191 | 9.8 CRITICAL | Microsoft Bing Images Remote Code Execution Vulnerability |
| CVE-2026-32194 | 9.8 CRITICAL | Microsoft Bing Images Remote Code Execution Vulnerability |
| CVE-2026-26139 | 8.6 HIGH | Microsoft Purview Elevation of Privilege Vulnerability |
| CVE-2026-26138 | 8.6 HIGH | Microsoft Purview Elevation of Privilege Vulnerability |
| CVE-2026-23658 | 8.6 HIGH | Azure DevOps: msazure Elevation of Privilege Vulnerability |
| CVE-2026-23659 | 8.6 HIGH | Azure Data Factory Information Disclosure Vulnerability |
| CVE-2026-26120 | 6.5 MEDIUM | Microsoft Bing Tampering Vulnerability |
| CVE-2026-26136 | 6.5 MEDIUM | Microsoft Copilot Information Disclosure Vulnerability |
| CVE-2026-24299 | 5.3 MEDIUM | M365 Copilot Information Disclosure Vulnerability |
No comments yet