CVE-2022-23256
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2022-23256 is a new vulnerability affecting Azure Data Explorer. Hackers can exploit this spoofing weakness to impersonate other users or entities within the system, potentially deceiving users into revealing sensitive information or taking unwanted actions. An attacker can manipulate the display name of an object, leading users to unintentionally interact with the false entity. Microsoft recommends updating to the latest version of Azure Data Explorer to mitigate this risk. Organizations should also be vigilant in monitoring user activity and verifying the authenticity of requests or entities within their environments.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.