CVE-2025-21199

Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:azure_agent:*:*:*:*:*:backup:*:*
cpe:2.3:a:microsoft:azure_agent:*:*:*:*:*:site_recovery:*:*

History

07 Jul 2025, 17:18

Type Values Removed Values Added
First Time Microsoft
Microsoft azure Agent
CPE cpe:2.3:a:microsoft:azure_agent:*:*:*:*:*:site_recovery:*:*
cpe:2.3:a:microsoft:azure_agent:*:*:*:*:*:backup:*:*
Summary
  • (es) La administración incorrecta de privilegios en el instalador del agente de Azure permite que un atacante autorizado eleve los privilegios localmente.
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21199 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21199 - Vendor Advisory

11 Mar 2025, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-11 17:16

Updated : 2025-07-07 17:18


NVD link : CVE-2025-21199

Mitre link : CVE-2025-21199

CVE.ORG link : CVE-2025-21199


JSON object : View

Products Affected

microsoft

  • azure_agent
CWE
CWE-269

Improper Privilege Management