{"id":"BIT-azure-cli-2025-24049","summary":"Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability","details":"Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.","aliases":["CVE-2025-24049"],"modified":"2026-09-08T08:45:39.786181785Z","published":"2025-07-03T05:35:52.125Z","database_specific":{"severity":"High","cpes":["cpe:2.3:a:microsoft:azure_command-line_interface:*:*:*:*:*:*:*:*"]},"references":[{"type":"ADVISORY","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24049"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-24049"}],"affected":[{"package":{"name":"azure-cli","ecosystem":"Bitnami","purl":"pkg:bitnami/azure-cli"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"2.69.0"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/azure-cli/BIT-azure-cli-2025-24049.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}],"schema_version":"1.9.0"}