Vulnerabilities > Microsoft > Azure Functions > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-10-15 | CVE-2024-38204 | Unspecified vulnerability in Microsoft Azure Functions Improper Access Control in Imagine Cup allows an authorized attacker to elevate privileges over a network. | 6.5 |
2020-10-16 | CVE-2020-16904 | Incorrect Authorization vulnerability in Microsoft Azure Functions <p>An elevation of privilege vulnerability exists in the way Azure Functions validate access keys.</p> <p>An unauthenticated attacker who successfully exploited this vulnerability could invoke an HTTP Function without proper authorization.</p> <p>This security update addresses the vulnerability by correctly validating access keys used to access HTTP Functions.</p> | 5.3 |