← Back

Azure Active Directory Connect

azure_active_directory_connect

Vendor: Microsoft • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
2Azure Active Directory Connect
Azure Active Directory Connect Provisioning Agent
Nov 21, 2024
Aug 12, 2021
N/A· v4
7.1 HIGH· v3
4.9 MEDIUM· v2
Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability
1Microsoft
1Azure Active Directory Connect
Nov 21, 2024
May 16, 2019
N/A· v4
5.3 MEDIUM· v3
3.5 LOW· v2
An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect build 1.3.20.0, which allows an attacker to execute two PowerShell cmdlets in context of a privileged account, and perform privil...Show more
An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect build 1.3.20.0, which allows an attacker to execute two PowerShell cmdlets in context of a privileged account, and perform privileged actions.To exploit this, an attacker would need to authenticate to the Azure AD Connect server, aka 'Microsoft Azure AD Connect Elevation of Privilege Vulnerability'.Show less
1Microsoft
1Azure Active Directory Connect
May 13, 2026
Jun 29, 2017
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
Azure AD Connect Password writeback, if misconfigured during enablement, allows an attacker to reset passwords and gain unauthorized access to arbitrary on-premises AD privileged user accounts aka "Azure AD Connect Eleva...Show more
Azure AD Connect Password writeback, if misconfigured during enablement, allows an attacker to reset passwords and gain unauthorized access to arbitrary on-premises AD privileged user accounts aka "Azure AD Connect Elevation of Privilege Vulnerability."Show less