Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-21384— Azure Health Bot Elevation of Privilege Vulnerability

CVSS 8.3 · High EPSS 0.73% · P73
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-21384

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Azure Health Bot Elevation of Privilege Vulnerability
Source: NVD (National Vulnerability Database)
Vulnerability Description
An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Source: NVD (National Vulnerability Database)
Vulnerability Type
保护机制失效
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Azure Health Bot 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Azure Health Bot是美国微软(Microsoft)公司的一个基于人工智能的服务,旨在为医疗健康领域提供自动化的聊天机器人解决方案。 Microsoft Azure Health Bot存在安全漏洞。攻击者利用该漏洞可以提升权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
MicrosoftAzure Health Bot - -

II. Public POCs for CVE-2025-21384

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-21384

登录查看更多情报信息。

IV. Related Vulnerabilities

V. Comments for CVE-2025-21384

No comments yet


Leave a comment