Vulnerabilities > Microsoft > Azure Active Directory Connect > High

DATE CVE VULNERABILITY TITLE RISK
2017-06-29 CVE-2017-8613 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Microsoft Azure Active Directory Connect 1.1.524.0
Azure AD Connect Password writeback, if misconfigured during enablement, allows an attacker to reset passwords and gain unauthorized access to arbitrary on-premises AD privileged user accounts aka "Azure AD Connect Elevation of Privilege Vulnerability."
network
high complexity
microsoft CWE-640
8.1