Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12757 | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. |
Fri, 13 Feb 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:azure_ai_bot_service:*:*:*:*:*:*:*:* |
Mon, 12 May 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft azure Ai Bot Service |
|
| CPEs | cpe:2.3:a:microsoft:azure_ai_bot_service:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Ai Bot Service |
Wed, 30 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 30 Apr 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Azure Bot Framework SDK Elevation of Privilege Vulnerability | |
| Weaknesses | CWE-285 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-26T18:29:06.729Z
Reserved: 2025-03-21T19:09:29.815Z
Link: CVE-2025-30389
Updated: 2025-04-30T17:26:05.501Z
Status : Analyzed
Published: 2025-04-30T18:15:46.330
Modified: 2025-05-12T19:43:12.623
Link: CVE-2025-30389
No data.
OpenCVE Enrichment
No data.
EUVD