Microsoft's Security Update Guide includes advisories for CVE-2023-36802, an elevation-of-privilege flaw in the Microsoft Streaming Service Proxy, and CVE-2023-24881, an information disclosure vulnerability affecting Microsoft Teams. The referenced entries indicate Microsoft formally tracked both issues through its advisory portal, identifying distinct impact types across collaboration and Windows-related service components.
The same set of references also points to newer Security Update Guide entries for CVE-2025-48823 and CVE-2025-29795, although the linked pages provide no public synopsis in the available metadata and appear as loading or placeholder vulnerability records. Together, the entries show Microsoft maintaining published tracking records for multiple vulnerabilities spanning information disclosure, privilege escalation, and additional CVEs awaiting or lacking detailed public summaries.

See real exploitation activity before you spend the cycle.
4 events from the most recent confirmed update back to the earliest known activity.
Microsoft published a Security Update Guide vulnerability page for CVE-2025-48823. The reference contains no synopsis or further event details beyond the existence of the entry.
Microsoft published a Security Update Guide vulnerability page for CVE-2025-29795. The reference contains no synopsis or further event details beyond the existence of the entry.
Microsoft listed CVE-2023-36802 in its Security Update Guide as a Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability. No additional synopsis or technical details were provided in the reference.
Microsoft listed CVE-2023-24881 in its Security Update Guide as a Microsoft Teams Information Disclosure Vulnerability. No additional synopsis or technical details were provided in the reference.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
4 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.