Microsoft Azure Bastion Vulnerability Exposed: Authentication Bypass Risk
A critical vulnerability has been discovered in Microsoft’s managed service Azure Bastion, which enables secure RDP and SSH connections to virtual machines without exposing them to the internet. The identified flaw, CVE-2025-49752, allows remote attackers to gain administrative privileges on all VMs accessible via Bastion, potentially leading to privilege escalation. The vulnerability is remotely exploitable, … Read more