VDB

CVE-2025-29814

CVE-2025-29814 PUBLISHED CVSS 9.300000190734863 CRITICAL

Improper authorization in Microsoft Partner Center allows an authorized attacker to elevate privileges over a network.

EPSS 2.18% · 80.8th percentile

Risk Scores

CVSS 3.1
9.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:H
EPSS Score
2.18%
80.8th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft Partner Center-
microsoftpartner_center-

Timeline

  • Mar 11, 2025 CVE Published
  • Mar 21, 2025 EPSS Score
  • Mar 21, 2025 PoC Published
  • Mar 21, 2025 PoC Published
  • Mar 21, 2025 PoC Published
  • Mar 21, 2025 PoC Published
  • Mar 24, 2025 EPSS Score
  • Mar 24, 2025 Coalition ESS Score
  • Mar 26, 2025 EPSS Score
  • Mar 28, 2025 EPSS Score
  • Apr 17, 2025 EPSS Score
  • Apr 30, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›