Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 07 Aug 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 07 Aug 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | '.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network. | |
| Title | Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft entra Provisioning Service |
|
| Weaknesses | CWE-35 | |
| CPEs | cpe:2.3:a:microsoft:entra_provisioning_service:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft entra Provisioning Service |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-08-07T03:56:08.210Z
Reserved: 2026-07-02T16:05:24.069Z
Link: CVE-2026-59115
Updated: 2026-08-07T01:02:38.802Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-07T01:30:04Z
-
CWE-35
Path Traversal: '.../...//'