High severity8.7CISA KEVNVD Advisory· Published Nov 26, 2024· Updated Jun 17, 2026
CVE-2024-49035
CVE-2024-49035
Description
An improper access control vulnerability in Partner.Microsoft.com allows an a unauthenticated attacker to elevate privileges over a network.
Affected products
3cpe:2.3:a:microsoft:partner_center:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:microsoft:partner_center:-:*:*:*:*:*:*:*
- (no CPE)range: N/A
Patches
Vulnerability mechanics
References
2- msrc.microsoft.com/update-guide/vulnerability/CVE-2024-49035nvdVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.