Impact
An integer overflow or wraparound flaw in Azure Data Manager for Energy permits an attacker who has authorized access to execute code over the network. The vulnerability arises when the system mismanages arithmetic operations and is classified as CWE-190.
Affected Systems
Microsoft Azure Data Manager for Energy is the affected product. No specific versions are listed, so all deployments of this product may be susceptible.
Risk and Exploitability
The flaw has a CVSS base score of 8.5, indicating high severity. EPSS score is not available, and the vulnerability is not listed in CISA's KEV catalog, so known exploitation activity is unknown. The typical attack path requires valid credentials and network connectivity to the service, making it a network‑based exploitation for an authorized user.
OpenCVE Enrichment