Improper control of generation of code ('code injection') in Azure Monitor Agent allows an unauthorized attacker to execute code over an adjacent network.
2025-07-08T17:15:40.387
2025-07-23T18:48:42.330
Analyzed
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | azure_monitor_agent | < 1.35.1 | Yes |