VDB
CISA-2024-38179
CISA-2024-38179
PUBLISHED
CVSS 8.8 HIGH
Reported by microsoft · Published October 8, 2024
Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability
Risk Scores
CVSS 3.1
8.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Azure Stack OS HCI | 10.0.20349.0 |
| Microsoft | Azure Stack HCI OS | 10.0.25398.0 |
| microsoft | azure_stack_hci_os_23H2 | 10.0.25398.0, 10.0.25398.0 |
| Microsoft | Azure Stack HCI OS | 10.0.25398.0, 10.0.25398.0 |
| Microsoft | Azure Stack OS HCI | 10.0.20349.0, 10.0.20349.0 |
| microsoft | azure_stack_hci_os_22h2 | 10.0.20349.0, 10.0.20349.0 |
Timeline
- Oct 8, 2024 CVE Published
- Jul 8, 2025 CVE Updated
- Apr 26, 2026 Security Advisory