Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12760 | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. |
Fri, 13 Feb 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Azure AI bot Elevation of Privilege Vulnerability | Azure AI Bot Elevation of Privilege Vulnerability |
| CPEs | cpe:2.3:a:microsoft:azure_ai_bot_service:*:*:*:*:*:*:*:* |
Mon, 12 May 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft azure Ai Bot Service |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:microsoft:azure_ai_bot_service:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Ai Bot Service |
Wed, 30 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 30 Apr 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Azure AI bot Elevation of Privilege Vulnerability | |
| Weaknesses | CWE-285 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-26T18:29:05.729Z
Reserved: 2025-03-21T19:09:29.815Z
Link: CVE-2025-30392
Updated: 2025-04-30T17:24:18.118Z
Status : Analyzed
Published: 2025-04-30T18:15:46.823
Modified: 2025-05-12T19:42:41.307
Link: CVE-2025-30392
No data.
OpenCVE Enrichment
No data.
EUVD