CVE-2022-41127: Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability
Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.35120Patch KB5010910 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 17.0.38061Patch KB5013420 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 14.0.49494Patch KB5021669 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in Build 49497Patch KB5021668 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in Build 52203Patch KB5005293 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.48426Patch KB5001733 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 52204 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in Build 30712Patch KB5010202 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 18.0.46905Patch KB5019239 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 21.0.49984Patch KB5021672 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 52297 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 20.0.49947Patch KB5021671 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 19.0.49925Patch KB5021670
Event History
Frequently Asked Questions
What is the severity of CVE-2022-41127?
CVE-2022-41127 has been rated as critical due to its potential for remote code execution.
How do I fix CVE-2022-41127?
To remediate CVE-2022-41127, ensure you apply the security updates provided by Microsoft for the affected Dynamics products.
Which products are affected by CVE-2022-41127?
CVE-2022-41127 affects several versions of Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central.
What types of attacks can exploit CVE-2022-41127?
CVE-2022-41127 can be exploited by attackers to execute arbitrary code remotely on vulnerable systems.
Is there a workaround for CVE-2022-41127?
Currently, applying the available patches is the recommended solution as there are no known effective workarounds for CVE-2022-41127.