CVE-2024-49056: Microsoft Airlift Microsoft Com

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

Authentication bypass by assumed-immutable data on airlift.microsoft.com allows an authorized attacker to elevate privileges over a network.

Affected products

  • Microsoft Airlift Microsoft Com: affected versions not specified

Published 2024-11-12. Last modified 2026-06-17.