CRITICAL 9.9 Microsoft

CVE-2024-43602

Azure CycleCloud Remote Code Execution Vulnerability

Microsoft Security Update 2024-Nov: Azure CycleCloud Remote Code Execution Vulnerability

Affected Products

References

Published: 2024-11-12 · Source: Microsoft · Feed updated: 2026-10-05
This critical severity vulnerability with a CVSS score of 9.9 was published on 2024-11-12 via Microsoft. Affected: Azure CycleCloud 8.6.3, Azure CycleCloud 8.6.4, Azure CycleCloud 8.0.0 and 5 more.

Risk Timeline

CVE Disclosed2024-11-12 · 691 days ago

Remediation Resources

Related Vulnerabilities

CVETitleSeverityCVSS
CVE-2025-29813Azure DevOps Elevation of Privilege VulnerabilityCRITICAL10.0
CVE-2025-54914Azure Networking Elevation of Privilege VulnerabilityCRITICAL10.0
CVE-2026-32169Azure Cloud Shell Elevation of Privilege VulnerabilityCRITICAL10.0
CVE-2025-65037Azure Container Apps Remote Code Execution VulnerabilityCRITICAL10.0
CVE-2025-29972 PoCAzure Storage Resource Provider Spoofing VulnerabilityCRITICAL9.9
CVE-2025-29827Azure Automation Elevation of Privilege VulnerabilityCRITICAL9.9
vulnfeed aggregates 7640 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.