Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-9061 | An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network. |
Wed, 17 Dec 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:azure_health_bot:*:*:*:*:*:*:*:* |
Tue, 08 Jul 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft azure Health Bot |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:microsoft:azure_health_bot:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Health Bot |
Tue, 01 Apr 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 01 Apr 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network. | |
| Title | Azure Health Bot Elevation of Privilege Vulnerability | |
| Weaknesses | CWE-693 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-26T19:08:50.537Z
Reserved: 2024-12-11T00:29:48.366Z
Link: CVE-2025-21384
Updated: 2025-04-01T03:43:16.363Z
Status : Analyzed
Published: 2025-04-01T01:15:17.127
Modified: 2025-07-08T17:15:46.383
Link: CVE-2025-21384
No data.
OpenCVE Enrichment
No data.
EUVD