CVE-2024-28917 - Understanding and Exploiting the Azure Arc-Enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability
---
Introduction
In March 2024, Microsoft flagged a critical security flaw identified as CVE-2024-28917. This vulnerability affects Azure Arc-enabled Kubernetes clusters and allows attackers to