Microsoft Azure Monitor Agent
cpe:2.3:a:microsoft:azure_monitor_agent:*:*:*:*:*:*:*
A vulnerability allowing deserialization of untrusted data in Azure Monitor Agent has been identified. This issue enables an authorized attacker to locally elevate privileges. Successful exploitation could grant SYSTEM privileges to the attacker.
Exploitation of this vulnerability allows for unauthorized privilege escalation, with attackers gaining SYSTEM privileges.
Users are advised to download the security update for Azure Monitor Agent. Instructions for managing the agent can be found in the Azure Monitor Agent Release Notes.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.