Remove Authentication Remove Case Study Remove CMS Remove Information Security
article thumbnail

Microsoft fixed Azure AD bug that led to Bing.com results manipulation and account takeover

Security Affairs

One of these apps is a content management system (CMS) that powers Bing.com and allowed us to not only modify search results, but also launch high-impact XSS attacks on Bing users.” ” reads the post published by security firm Wiz. The vulnerability is related to a misconfiguration in ‘Shared Responsibility confusion.’

CMS 83