Metrics
Affected Vendors & Products
Thu, 23 Oct 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of input during web page generation ('cross-site scripting') in Azure Monitor allows an authorized attacker to perform spoofing over a network. | Improper neutralization of input during web page generation ('cross-site scripting') in Azure Monitor allows an unauthorized attacker to perform spoofing over a network. |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Mon, 20 Oct 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:azure_monitor:-:*:*:*:*:*:*:* |
Fri, 10 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 10 Oct 2025 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft azure Monitor |
|
| Vendors & Products |
Microsoft
Microsoft azure Monitor |
Thu, 09 Oct 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of input during web page generation ('cross-site scripting') in Azure Monitor allows an authorized attacker to perform spoofing over a network. | |
| Title | Azure Monitor Log Analytics Spoofing Vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published: 2025-10-09T21:04:12.117Z
Updated: 2025-10-24T23:08:52.370Z
Reserved: 2025-08-12T20:19:59.423Z
Link: CVE-2025-55321
Updated: 2025-10-10T14:27:28.209Z
Status : Modified
Published: 2025-10-09T21:15:37.890
Modified: 2025-10-23T22:15:38.683
Link: CVE-2025-55321
No data.