Threat actors exploiting the flaw, tracked as CVE-2025-24989, could achieve privilege escalation in targeted networks and user registration control evasion to facilitate unauthorized site access, reported Microsoft, which noted the issue to impact only certain Power Pages users, who were urged to examine their websites for possible compromise.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.