CVE detail
CVE-2022-35829
Service Fabric Explorer Spoofing Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 13.9 · diversity 6.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
3 source links · newest first
Researchers shared details about a flaw, dubbed Super FabriXss, in Azure Service Fabric Explorer (SFX) that could lead to unauthenticated remote code execution. Researchers from Orca Security shared details about a new vulnerability, dubbed Super FabriXss (CVE-2023-23383 – CVSS score: 8.2), in Azure. The experts demonstrated how to escalate a reflected XSS vulnerability in Azure Service […]
newssecurityaffairs.comMar 30, 2023, 9:01 PMCybersecurity researchers published technical details about a now-patched FabriXss flaw that impacts Azure Fabric Explorer. Orca Security researchers have released technical details about a now-patched FabriXss vulnerability, tracked as CVE-2022-35829 (CVSS 6.2), that impacts Azure Fabric Explorer. An attacker can exploit the vulnerability to gain administrator privileges on the cluster. In order to exploit this flaw, an […]
newssecurityaffairs.comOct 19, 2022, 3:14 PMMicrosoft recently patched a vulnerability that can allow an attacker to gain full administrator permissions on Azure Service Fabric clusters.
newswww.securityweek.comOct 19, 2022, 2:06 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2025-21195CVSS 6.0 · Medium
Improper link resolution before file access ('link following') in Service Fabric allows an authorized attacker to elevate privileges locally.
- CVE-2024-43480CVSS 6.6 · Medium
Azure Service Fabric for Linux Remote Code Execution Vulnerability
- CVE-2023-36868CVSS 6.5 · Medium
Azure Service Fabric on Windows Information Disclosure Vulnerability
- CVE-2023-23383CVSS 8.2 · High
Service Fabric Explorer Spoofing Vulnerability
- CVE-2023-21531CVSS 7.0 · High
Azure Service Fabric Container Elevation of Privilege Vulnerability
- CVE-2021-27075CVSS 6.8 · Medium
Azure Virtual Machine Information Disclosure Vulnerability