Rewterz
SolarMarker Malware’s Multi-Tiered Infrastructure Complicates Takedown Attempts – Active IOCs
May 23, 2024
Rewterz
Turla APT Uses MSBuild to Propagate TinyTurla Backdoor – Active IOCs
May 23, 2024

CVE-2024-30060 – Microsoft Azure Monitor Agent Vulnerability

Severity

High

Analysis Summary

CVE-2024-30060

Microsoft Azure could allow a local authenticated attacker to gain elevated privileges on the system, caused by a flaw in Monitor Agent. By sending a specially crafted request, an attacker could exploit this vulnerability to escalate privileges.

Impact

  • Privilege Escalation

Indicators of Compromise

CVE

  • CVE-2024-30060

Affected Vendors

Microsoft

Affected Products

  • Microsoft Azure Monitor Agent

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security Update Guide