Microsoft Power Apps是美国Microsoft公司的一款低代码开发平台,旨在帮助用户轻松构建自定义的企业级应用程序。 Microsoft Power Apps存在授权问题漏洞,该漏洞源于授权不当,可能导致未经授权的攻击者通过网络提升权限。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Copilot Cowork | - |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Copilot Cowork | - | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-63508 | 10.0 CRITICAL | Microsoft Planetary Computer Pro Elevation of Privilege Vulnerability |
| CVE-2026-65667 | 10.0 CRITICAL | Microsoft Teams Elevation of Privilege Vulnerability |
| CVE-2026-56162 | 10.0 CRITICAL | Azure SQL Database Elevation of Privilege Vulnerability |
| CVE-2026-50515 | 9.9 CRITICAL | Azure Service Bus Remote Code Execution Vulnerability |
| CVE-2026-62830 | 9.9 CRITICAL | Azure SRE Agent Elevation of Privilege Vulnerability |
| CVE-2026-59115 | 9.9 CRITICAL | Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability |
| CVE-2026-50481 | 9.9 CRITICAL | Azure Active Directory Elevation of Privilege Vulnerability |
| CVE-2026-62873 | 9.8 CRITICAL | Microsoft 365 Admin Center Elevation of Privilege Vulnerability |
| CVE-2026-70332 | 9.6 CRITICAL | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-56161 | 9.6 CRITICAL | Azure Logic Apps Information Disclosure Vulnerability |
| CVE-2026-62896 | 9.6 CRITICAL | Microsoft Teams Elevation of Privilege Vulnerability |
| CVE-2026-68823 | 9.1 CRITICAL | Azure Confidential Ledger Remote Code Execution Vulnerability |
| CVE-2026-49163 | 8.8 HIGH | Application Insights Profiler Elevation of Privilege Vulnerability |
| CVE-2026-65668 | 8.8 HIGH | Microsoft Purview eDiscovery Elevation of Privilege Vulnerability |
| CVE-2026-62836 | 8.7 HIGH | Azure SQL Managed Instance Elevation of Privilege Vulnerability |
| CVE-2026-62918 | 7.5 HIGH | Microsoft Teams Spoofing Vulnerability |
No comments yet