Lucene search

K
cvelistMicrosoftCVELIST:CVE-2023-29332
HistorySep 12, 2023 - 4:58 p.m.

CVE-2023-29332 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability

2023-09-1216:58:34
CWE-330
microsoft
www.cve.org
microsoft azure
kubernetes service
elevation of privilege

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C

9.7 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.3%

CNA Affected

[
  {
    "vendor": "Microsoft",
    "product": "Azure Kubernetes Service",
    "cpes": [
      "cpe:2.3:a:microsoft:azure_kubernetes_service:-:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Unknown"
    ],
    "versions": [
      {
        "version": "1.0",
        "lessThan": "VHD 202308",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  }
]

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C

9.7 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.3%