Jan. 17, 2023, 2 p.m. | msrc

Microsoft Security Response Center msrc-blog.microsoft.com

Summary  Microsoft recently fixed a set of Server-Side Request Forgery (SSRF) vulnerabilities in four Azure services (Azure API Management, Azure Functions, Azure Machine Learning, and Azure Digital Twins) reported by Orca Security. These SSRF vulnerabilities were determined to be low risk as they do not allow access to sensitive information or Azure backend services. Once …

Microsoft resolves four SSRF vulnerabilities in Azure cloud services Read More »

access api api management azure azure cloud azure cloud services backend cloud cloud services digital digital twins forgery functions information low machine machine learning management microsoft msrc orca orca security request risk security sensitive information server server-side request forgery services ssrf vulnerabilities

More from msrc-blog.microsoft.com / Microsoft Security Response Center

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Senior Security Researcher - Linux MacOS EDR (Cortex)

@ Palo Alto Networks | Tel Aviv-Yafo, Israel

Sr. Manager, NetSec GTM Programs

@ Palo Alto Networks | Santa Clara, CA, United States

SOC Analyst I

@ Fortress Security Risk Management | Cleveland, OH, United States