Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-6316 | Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally. |
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 02 Jul 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft azure Command-line Interface |
|
| CPEs | cpe:2.3:a:microsoft:azure_command-line_interface:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Command-line Interface |
Tue, 11 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 11 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally. | |
| Title | Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability | |
| Weaknesses | CWE-77 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-13T19:39:06.152Z
Reserved: 2025-01-16T23:11:19.732Z
Link: CVE-2025-24049
Updated: 2025-03-11T18:25:34.204Z
Status : Analyzed
Published: 2025-03-11T17:16:26.907
Modified: 2025-07-02T16:09:04.287
Link: CVE-2025-24049
No data.
OpenCVE Enrichment
No data.
EUVD