Impact
The vulnerability is a server‑side request forgery that allows an attacker to craft requests that are sent by Azure AI Foundry on the attacker’s behalf. Because these requests originate from the service, which has higher network privileges, the attacker can reach internal resources, potentially exposing sensitive data or obtaining further access to protected systems. The impact includes loss of confidentiality and integrity of internal network assets and an elevated authority that the attacker can abuse within the organization.
Affected Systems
Microsoft Azure AI Foundry is affected, with all stated versions applicable as no specific vendor‑provided version information is listed. The CPE indicates that all releases of the product are vulnerable.
Risk and Exploitability
The vulnerability has a CVSS score of 7.5 and an EPSS score of less than 1 %, indicating a high severity but a relatively low probability of exploitation. It is not currently listed in the CISA KEV catalog. The likely attack vector is a malicious user interacting with the service’s public endpoint, providing a crafted URL that the service then resolves internally. The condition requires that the attacker can submit input to the service; however, once the SSRF trigger is achieved, elevated network privileges can be abused to access internal endpoints.
OpenCVE Enrichment