VDB

GCVE-110-CLOUD-2023-0053

GCVE-110-CLOUD-2023-0053
Advisory Published
Vulnetix · Advisory published February 15, 2023
Azure Active Directory B2C service (AD B2C) mistakenly implemented RSA key authentication using the public part of the key pair instead of the private one. This cryptographic flaw could have allowed an unauthenticated attacker to craft an OAuth refresh token for any AD B2C user account if they knew their public key. Moreover, every AD B2C user's public key was recoverable through an unrelated vulnerability (though asymmetric cryptography should not rely on public key secrecy regardless). An attacker could redeem this refresh token for a session token, thereby gaining access to the victim account as if they had logged in through a legitimate login flow.

Affected Products

VendorProductVersionsPlatforms
AzureAD B2C
AzureActive Directory
AzureCloud Services

Browse GCVE Records

74,657 records in the GCVE database · Updated July 24, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›