First published: Thu Feb 06 2025(Updated: )
<p>Server-Side Request Forgery (SSRF) in Microsoft Dynamics 365 Sales allows an authorized attacker to elevate privileges over a network.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Dynamics 365 Sales | ||
Microsoft Dynamics 365 Sales |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2025-21177 is classified as an elevation of privilege vulnerability.
To mitigate CVE-2025-21177, ensure that your Microsoft Dynamics 365 Sales is updated to the latest security patch provided by Microsoft.
CVE-2025-21177 affects users of Microsoft Dynamics 365 Sales with authorized access.
CVE-2025-21177 is a Server-Side Request Forgery (SSRF) vulnerability.
An attacker exploiting CVE-2025-21177 can elevate privileges over a network within Microsoft Dynamics 365 Sales.