Microsoft Windows Admin Center
cpe:2.3:a:microsoft:windows_admin_center:*:*:*:*:*:*:*
A vulnerability allowing external control of file names or paths has been identified in the Windows Admin Center extension for Azure Portal. This issue could enable an unauthorized attacker to gain unauthorized read-only access to the local file system.
Exploitation of this vulnerability could lead to unauthorized information disclosure, allowing access to the local file system.
Users can apply the security update available through the Microsoft Update Catalog. For Windows Admin Center in Azure Portal, the update is included in version 0.45.0.0.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.