First published: Tue Mar 14 2023(Updated: )
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Dynamics 365 (on-premises) | =9.0 | |
Microsoft Dynamics 365 (on-premises) | =9.1 | |
Microsoft Dynamics 365 | >=9.0<9.0.45.11 | |
Microsoft Dynamics 365 | >=9.1<9.1.16.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24919 is a Cross-site Scripting (XSS) vulnerability in Microsoft Dynamics 365 (on-premises).
CVE-2023-24919 has a severity rating of 5.4 (high).
CVE-2023-24919 allows attackers to inject malicious scripts into web pages viewed by users, potentially leading to information disclosure or other attacks.
Yes, Microsoft has provided patches to address the vulnerability in Microsoft Dynamics 365 (on-premises).
You can find more information about CVE-2023-24919 on the Microsoft Security Response Center website.