CVE-2026-49163: Application Insights Profiler Elevation of Privilege Vulnerability
Published Aug 6, 2026
·Updated
Application Insights Profiler Elevation of Privilege Vulnerability
Other sources
Improper limitation of a pathname to a restricted directory ('path traversal') in Application Insights Profiler allows an authorized attacker to elevate privileges over a network.
— Microsoft
Affected Software
1 affected component
Microsoft Application Insights Profiler
Event History
Aug 6, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·10:37 PM
Data Sourced
via MITRE·10:37 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-49163?
The severity of CVE-2026-49163 is high with a score of 8.8.
2
How do I fix CVE-2026-49163?
To fix CVE-2026-49163, ensure that the Application Insights Profiler is updated to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2026-49163?
CVE-2026-49163 is a path traversal vulnerability that allows an authorized attacker to elevate privileges.
4
What is the impact of CVE-2026-49163?
The impact of CVE-2026-49163 allows an attacker to gain elevated privileges over a network.
5
When was CVE-2026-49163 published?
CVE-2026-49163 was published on August 6, 2026.