Vulnerabilities (CVE)

Filtered by CWE-454
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-26148 1 Microsoft 1 Azure Ad Ssh Login Extension For Linux 2026-03-13 N/A 8.1 HIGH
External initialization of trusted variables or data stores in Azure Entra ID allows an unauthorized attacker to elevate privileges locally.
CVE-2025-36244 1 Ibm 2 Aix, Vios 2025-10-17 N/A 7.4 HIGH
IBM AIX 7.2, 7.3, IBM VIOS 3.1, and 4.1, when configured to use Kerberos network authentication, could allow a local user to write to files on the system with root privileges due to improper initialization of critical variables.