CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

[UPDATE] [hoch] Microsoft Clouddienste: Mehrere Schwachstellen

highCVE-2026-62906CVE-2026-62916CVE-2026-65818CVE-2026-69857CVE-2026-70178CVE-2026-70352
Ein Angreifer kann mehrere Schwachstellen in verschiedenen Microsoft Clouddiensten ausnutzen, um Sicherheitsmechanismen zu umgehen, Berechtigungen zu erhöhen, vertrauliche Informationen offenzulegen sowie Daten oder Dienste zu beeinträchtigen.

CSIRTS triage

What
Multiple vulnerabilities in various Microsoft Cloud Services allow security bypass, privilege escalation, information disclosure, and service compromise.
Who is affected
Microsoft Cloud Services deployments including Azure and related services.
Urgency
Urgent remediation required; high severity with multiple attack vectors including privilege escalation and authentication bypass.
Action
Apply all available security patches from Microsoft for the CVEs listed.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Cloud Services

Get an email when a new Cloud Services advisory drops — max one per day, one-click unsubscribe.

Details

Source
CERT-Bund (BSI) Security Advisories (DE · national-cert · site)
Severity
high
Published
2026-09-09
Exploitation
Not in CISA KEV at last sync

Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-3186

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2026-62906coverage & exploitation statusNVD · CVE.org
CVE-2026-62916coverage & exploitation statusNVD · CVE.org
CVE-2026-65818coverage & exploitation statusNVD · CVE.org
CVE-2026-69857coverage & exploitation statusNVD · CVE.org
CVE-2026-70178coverage & exploitation statusNVD · CVE.org
CVE-2026-70352coverage & exploitation statusNVD · CVE.org
CVE-2026-80098coverage & exploitation statusNVD · CVE.org
CVE-2026-83711coverage & exploitation statusNVD · CVE.org
CVE-2026-83941coverage & exploitation statusNVD · CVE.org

Same CVEs, other sources

How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.

More from CERT-Bund (BSI) Security Advisories