Headline
CVE-2024-26201: Microsoft Intune Linux Agent Elevation of Privilege Vulnerability
According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
Exploitation of the vulnerability requires a user to modify a custom compliance script on the device after it is written to temporary storage and before execution of the script finishes.
Microsoft Security Response Center: Latest News
CVE-2025-48822: Windows Hyper-V Discrete Device Assignment (DDA) Remote Code Execution Vulnerability