Vulnerability ID: CVE-2025-62210 Software Affected: Dynamics 365 Field Service (online) Vulnerability Type: Spoofing Vulnerability Release Date: Nov 11, 2025 Assigning CNA: Microsoft CVE.org Link: CVE-2025-62210 Max Severity: Important Weakness: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVSS Source: Microsoft Vector String: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C Metrics: CVSS:3.1 8.7 / 7.6 Base Score Metrics Attack Vector: Network Attack Complexity: Low Privileges Required: Low User Interaction: Required Scope: Changed Confidentiality: High Integrity: High Availability: None Temporal Score Metrics Exploit Code Maturity: Unproven Remediation Level: Official Fix Report Confidence: Confirmed