Known vulnerabilities in Azure File Sync

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:azure_file_sync:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Azure File Sync Azure File Sync is affected by 4 known vulnerabilities: 4 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114008 - Improper Access Control
CVE-2025-53729
CWE-284 Low
No
No
- 13.08.2025 -
#VU109095 - Improper Access Control
CVE-2025-29973
CWE-284 Low
No
No
- 13.05.2025 -
#VU91724 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-35253
CWE-59 Low
No
No
- 11.06.2024 -
#VU86488 - Permissions, Privileges, and Access Controls
CVE-2024-21397
CWE-264 Low
No
No
- 13.02.2024 -