on February 19, 2025 at 8:00 am — CVE-2025-24989 Microsoft Power Pages Elevation of Privilege Vulnerability
An improper access control vulnerability in Power Pages allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. This vulnerability **has already been mitigated in the service** and all affected cusomters have been notified. This update addressed the registration control bypass. Affected customers have been given instructions on reviewing […]