First published: Tue Mar 08 2022(Updated: )
Azure Site Recovery Remote Code Execution Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Azure Site Recovery | <9.47.6219.1 | |
Microsoft Azure Site Recovery |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24520 is classified as a critical severity vulnerability.
CVE-2022-24520 allows remote code execution due to improper validation in Azure Site Recovery.
To fix CVE-2022-24520, update Azure Site Recovery to version 9.47.6219.1 or later.
As of now, there are no confirmed reports of CVE-2022-24520 being actively exploited.
CVE-2022-24520 specifically affects Microsoft Azure Site Recovery prior to version 9.47.6219.1.