Filtered by vendor Microsoft Subscriptions
Filtered by product Azure Arc Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-26627 1 Microsoft 1 Azure Arc 2025-07-13 7 High
Improper neutralization of special elements used in a command ('command injection') in Azure Arc allows an authorized attacker to elevate privileges locally.
CVE-2022-38007 1 Microsoft 2 Azure Arc, Azure Guest Configuration 2025-03-11 7.8 High
Azure Guest Configuration and Azure Arc-enabled servers Elevation of Privilege Vulnerability