Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Dynamics 365
Total 80 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-21778 1 Microsoft 1 Dynamics 365 2023-12-10 N/A 8.0 HIGH
Microsoft Dynamics Unified Service Desk Remote Code Execution Vulnerability
CVE-2023-24891 1 Microsoft 1 Dynamics 365 2023-12-10 N/A 5.4 MEDIUM
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2023-24920 1 Microsoft 1 Dynamics 365 2023-12-10 N/A 5.4 MEDIUM
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2022-35805 1 Microsoft 1 Dynamics 365 2023-12-10 N/A 8.8 HIGH
Microsoft Dynamics CRM (on-premises) Remote Code Execution Vulnerability
CVE-2022-34700 1 Microsoft 1 Dynamics 365 2023-12-10 N/A 8.8 HIGH
Microsoft Dynamics CRM (on-premises) Remote Code Execution Vulnerability
CVE-2022-23259 1 Microsoft 1 Dynamics 365 2023-12-10 9.0 HIGH 8.8 HIGH
Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
CVE-2021-41354 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2021-41353 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
Microsoft Dynamics 365 (on-premises) Spoofing Vulnerability
CVE-2021-28461 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 6.1 MEDIUM
Dynamics Finance and Operations Cross-site Scripting Vulnerability
CVE-2020-1063 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'.
CVE-2019-1375 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'.
CVE-2018-8654 1 Microsoft 1 Dynamics 365 2023-12-10 4.0 MEDIUM 6.5 MEDIUM
An elevation of privilege vulnerability exists in Microsoft Dynamics 365 Server, aka 'Microsoft Dynamics 365 Elevation of Privilege Vulnerability'.
CVE-2020-0656 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'.
CVE-2019-1229 1 Microsoft 1 Dynamics 365 2023-12-10 6.5 MEDIUM 8.8 HIGH
An elevation of privilege vulnerability exists in Dynamics On-Premise v9, aka 'Dynamics On-Premise Elevation of Privilege Vulnerability'.
CVE-2019-1008 1 Microsoft 2 Dynamics 365, Dynamics Crm 2015 2023-12-10 4.3 MEDIUM 5.9 MEDIUM
A security feature bypass vulnerability exists in Dynamics On Premise, aka 'Microsoft Dynamics On-Premise Security Feature Bypass'.
CVE-2018-8605 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365. This CVE ID is unique from CVE-2018-8606, CVE-2018-8607, CVE-2018-8608.
CVE-2018-8606 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365. This CVE ID is unique from CVE-2018-8605, CVE-2018-8607, CVE-2018-8608.
CVE-2018-8608 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365. This CVE ID is unique from CVE-2018-8605, CVE-2018-8606, CVE-2018-8607.
CVE-2018-8607 1 Microsoft 1 Dynamics 365 2023-12-10 3.5 LOW 5.4 MEDIUM
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365. This CVE ID is unique from CVE-2018-8605, CVE-2018-8606, CVE-2018-8608.
CVE-2018-8609 1 Microsoft 1 Dynamics 365 2023-12-10 6.5 MEDIUM 8.8 HIGH
A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) version 8 when the server fails to properly sanitize web requests to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Remote Code Execution Vulnerability." This affects Microsoft Dynamics 365.