Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-37151 | An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network. |
Tue, 13 Aug 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 Aug 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network. | |
| Title | Azure Health Bot Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft azure Health Bot |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:microsoft:azure_health_bot:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Health Bot |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2025-07-10T16:33:52.428Z
Reserved: 2024-06-11T22:36:08.188Z
Link: CVE-2024-38109
Updated: 2024-08-13T18:41:33.610Z
Status : Analyzed
Published: 2024-08-13T18:15:11.490
Modified: 2024-08-16T20:37:34.397
Link: CVE-2024-38109
No data.
OpenCVE Enrichment
No data.
EUVD