Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Dynamics_365
(Microsoft)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 86 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-02-13 | CVE-2024-21395 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability | Dynamics_365 | N/A | ||
2024-02-13 | CVE-2024-21396 | Dynamics 365 Sales Spoofing Vulnerability | Dynamics_365 | N/A | ||
2024-06-11 | CVE-2024-35263 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | Dynamics_365 | N/A | ||
2024-07-09 | CVE-2024-30061 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | Dynamics_365 | N/A | ||
2024-09-10 | CVE-2024-43476 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability | Dynamics_365 | 5.4 | ||
2024-08-13 | CVE-2024-38211 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability | Dynamics_365 | 8.2 | ||
2019-08-14 | CVE-2019-1229 | An elevation of privilege vulnerability exists in Dynamics On-Premise v9. An attacker who successfully exploited the vulnerability could leverage a customizer privilege within Dynamics to gain control of the Web Role hosting the Dynamics installation. To exploit this vulnerability, an attacker needs to have credentials for a user that has permission to author customized business rules in Dynamics, and persist XAML script in a way that causes it to be interpreted as code. The update addresses... | Dynamics_365 | 8.8 | ||
2020-01-24 | CVE-2018-8654 | An elevation of privilege vulnerability exists in Microsoft Dynamics 365 Server, aka 'Microsoft Dynamics 365 Elevation of Privilege Vulnerability'. | Dynamics_365 | N/A | ||
2020-01-14 | CVE-2020-0656 | A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'. | Dynamics_365 | N/A | ||
2019-10-10 | CVE-2019-1375 | A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'. | Dynamics_365 | N/A |