First published: Wed Apr 15 2020(Updated: )
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'. This CVE ID is unique from CVE-2020-1050.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Dynamics 365 Server | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1049 has a medium severity rating due to its potential for exploitation via cross site scripting.
To resolve CVE-2020-1049, apply the latest security updates released by Microsoft for Dynamics 365 Server version 9.0.
CVE-2020-1049 specifically affects Microsoft Dynamics 365 Server version 9.0.
CVE-2020-1049 is classified as a cross site scripting vulnerability.
The risks associated with CVE-2020-1049 include potential unauthorized access and manipulation of user data through malicious scripts.