Microsoft Dynamics 365是美国微软(Microsoft)公司的一套适用于跨国企业的ERP业务解决方案。用于财务管理、生产管理和商业智能管理等。 Microsoft Dynamics 365存在授权问题漏洞。攻击者利用该漏洞可以提升权限。以下产品和版本受到影响:Microsoft Dynamics 365 Business Central 2023 Release Wave 1,Microsoft Dynamics 365 Business Central 2024 Release Wa
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft Dynamics 365 Business Central 2023 Release Wave 1 | 22.0.0< 22.0.64727 |
affected |
| Microsoft | Microsoft Dynamics 365 Business Central 2023 Release Wave 2 | 23.0.0< 24.0.22865 |
affected |
| Microsoft | Microsoft Dynamics 365 Business Central 2024 Release Wave 1 | 24.0< 23.0.22561 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Dynamics 365 Business Central 2023 Release Wave 1 | 22.0.0 ~ 22.0.64727 | - |
|
| Microsoft | Microsoft Dynamics 365 Business Central 2023 Release Wave 2 | 23.0.0 ~ 24.0.22865 | - |
|
| Microsoft | Microsoft Dynamics 365 Business Central 2024 Release Wave 1 | 24.0 ~ 23.0.22561 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-43491 | 9.8 CRITICAL | Microsoft Windows Update Remote Code Execution Vulnerability |
| CVE-2024-38220 | 9.0 CRITICAL | Azure Stack Hub Elevation of Privilege Vulnerability |
| CVE-2024-37338 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-43461 | 8.8 HIGH | Windows MSHTML Platform Spoofing Vulnerability |
| CVE-2024-43455 | 8.8 HIGH | Windows Remote Desktop Licensing Service Spoofing Vulnerability |
| CVE-2024-38259 | 8.8 HIGH | Microsoft Management Console Remote Code Execution Vulnerability |
| CVE-2024-38260 | 8.8 HIGH | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
| CVE-2024-43469 | 8.8 HIGH | Azure CycleCloud Remote Code Execution Vulnerability |
| CVE-2024-37965 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2024-26191 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-38018 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2024-26186 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-37341 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2024-37339 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-37980 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2024-37340 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-37335 | 8.8 HIGH | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
| CVE-2024-43479 | 8.5 HIGH | Microsoft Power Automate Desktop Remote Code Execution Vulnerability |
| CVE-2024-38194 | 8.4 HIGH | Azure Web Apps Elevation of Privilege Vulnerability |
| CVE-2024-38216 | 8.2 HIGH | Azure Stack Hub Elevation of Privilege Vulnerability |
Showing top 20 of 79 CVEs. View all on vendor page → →
No comments yet