First published: Tue Dec 14 2021(Updated: )
Microsoft Defender for IoT Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Defender for IoT | <10.5.2 | |
Microsoft Azure Defender for IoT | ||
Microsoft Defender for IoT | ||
<10.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42311 is a vulnerability in Microsoft Azure Defender for IoT that allows remote attackers to bypass authentication.
Remote attackers can exploit CVE-2021-42311 by bypassing authentication on affected installations of Microsoft Azure Defender for IoT.
Microsoft Defender for IoT versions up to and excluding 10.5.2 are affected by CVE-2021-42311.
CVE-2021-42311 has a severity value of 10, which is classified as critical.
Yes, Microsoft has released patches and remediation guidance for CVE-2021-42311. You can find the details in the Microsoft Security Guidance Advisory.