Microsoft Azure API Management Flaw Enables Cross-Tenant Account Creation, Bypassing Admin Restrictions
https://cybersecuritynews.com/microsoft-azure-api-management-flaw/
#Infosec #Security #Cybersecurity #CeptBiro #Microsoft #Azure #APIManagement #CrossTenantAccountCreation #AdminRestrictions
Microsoft Azure API Management Flaw Enables Cross-Tenant Account Creation, Bypassing Admin Restrictions
A critical security vulnerability in Microsoft Azure API Management (APIM) Developer Portal enables attackers to register accounts across different tenant instances, even when administrators have explicitly disabled user signup through the portal interface.