First published: Thu Aug 12 2021(Updated: )
Microsoft Dynamics Business Central Cross-site Scripting Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Dynamics 365 Business Central | =2019-spring_update | |
Microsoft Dynamics 365 Business Central | =2020-release_wave_1 | |
Microsoft Dynamics 365 Business Central | =2020-release_wave_2 | |
Microsoft Dynamics NAV 2018 | =2017 | |
Microsoft Dynamics NAV 2018 | =2018 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36946 has a severity rating that indicates a moderate risk associated with cross-site scripting vulnerabilities in Microsoft Dynamics Business Central.
To fix CVE-2021-36946, ensure you apply the latest security updates provided by Microsoft for the affected versions of Dynamics Business Central and Dynamics NAV.
CVE-2021-36946 affects Microsoft Dynamics 365 Business Central versions 2019 Spring Update, 2020 Release Wave 1, 2020 Release Wave 2, and Dynamics NAV versions 2017 and 2018.
CVE-2021-36946 is classified as a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts into web pages.
Organizations using the affected versions of Microsoft Dynamics Business Central and Dynamics NAV are impacted by CVE-2021-36946.