21 results (0.011 seconds)

CVSS: 7.6EPSS: 0%CPEs: 1EXPL: 0

14 May 2024 — Dynamics 365 Customer Insights Spoofing Vulnerability Vulnerabilidad de suplantación de identidad en Dynamics 365 Customer Insights • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30048 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 7.6EPSS: 0%CPEs: 1EXPL: 0

14 May 2024 — Dynamics 365 Customer Insights Spoofing Vulnerability Vulnerabilidad de suplantación de identidad en Dynamics 365 Customer Insights • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30047 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 7.6EPSS: 0%CPEs: 1EXPL: 0

12 Sep 2023 — Dynamics Finance and Operations Cross-site Scripting Vulnerability Vulnerabilidad de Cross-site Scripting de Dynamics Finance and Operations • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36800 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

14 Jul 2023 — Dynamics 365 Finance Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24896 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 7.2EPSS: 6%CPEs: 2EXPL: 0

09 Feb 2022 — Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de Código Remota en Microsoft Dynamics 365 (on-premises) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21957 •

CVSS: 6.5EPSS: 12%CPEs: 2EXPL: 0

25 Feb 2021 — Microsoft Dataverse Information Disclosure Vulnerability Una Vulnerabilidad de Divulgación de Información de Microsoft Dataverse • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-24101 •

CVSS: 8.8EPSS: 12%CPEs: 1EXPL: 0

09 Dec 2020 — Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability Vulnerabilidad de ejecución de código remota de Microsoft Dynamics 365 for Finance and Operations (on-premises) Este CVE ID es diferente de CVE-2020-17152 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17158 •

CVSS: 8.8EPSS: 12%CPEs: 1EXPL: 0

09 Dec 2020 — Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability Vulnerabilidad de ejecución de código remota de Microsoft Dynamics 365 for Finance and Operations (on-premises) Este CVE ID es diferente de CVE-2020-17158 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17152 •

CVSS: 8.7EPSS: 0%CPEs: 2EXPL: 0

09 Dec 2020 — Dynamics CRM Webclient Cross-site Scripting Vulnerability Vulnerabilidad de tipo Cross-site Scripting en el sitio web de Dynamics CRM • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17147 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 2EXPL: 0

16 Oct 2020 —

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated attacker could exploit the vulnerability by sending a specially crafted request to an affected Dynamics server.

The attacker who successfully exploited the vulnerability could then perform cross-site scripting attacks on affected systems and run script in the security context of the current authenticated us... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-16956 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •