First published: Thu Jun 27 2024(Updated: )
<p>An authenticated attacker can exploit an untrusted search path vulnerability in Microsoft Dataverse to execute code over a network.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Power Platform | ||
Microsoft Power Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35260 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2024-35260, apply the latest security updates provided by Microsoft for the affected software.
CVE-2024-35260 affects users of Microsoft Dataverse within the Power Platform.
CVE-2024-35260 is an untrusted search path vulnerability that allows code execution over a network.
If you believe you are affected by CVE-2024-35260, immediately review your security posture and apply the necessary updates.