QID 92118
Date Published: 2024-02-19
QID 92118: Microsoft Azure File Sync Elevation of Privilege Vulnerability - February 2024
Azure File Sync enables you to centralize your organization's file shares in Azure Files, while keeping the flexibility, performance, and compatibility of a Windows file server.
Affected :
Azure File Sync from v14.0 prior to 16.2
Azure File Sync from v17.0 prior to 17.1
QID Detection Logic (Authenticated):
This QID checks for the file version of FileSyncSvc.exe, if this file version is from v14.0 prior to 16.2 it is considered as vulnerable.
Successful exploit could compromise Confidentiality, Integrity and Availability.
Solution
Customers are advised to refer to CVE-2024-21397 for more details pertaining to this vulnerability.
Vendor References
- CVE-2024-21397 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21397
CVEs related to QID 92118
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Azure File Sync |
|