First published: Wed Jan 29 2025(Updated: )
<p>Missing authorization in Microsoft Account allows an unauthorized attacker to elevate privileges over a network.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Account | ||
Microsoft Account |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-21396 is classified as an elevation of privilege vulnerability affecting Microsoft Account.
To remediate CVE-2025-21396, ensure that you apply the latest security updates provided by Microsoft.
CVE-2025-21396 exploits a missing authorization issue in Microsoft Account that could allow unauthorized privilege escalation.
Users of Microsoft Account services are at risk if they do not apply the necessary security updates.
Yes, CVE-2025-21396 can potentially be exploited over a network.