Vulnerabilities > Microsoft > Dynamics 365

DATE CVE VULNERABILITY TITLE RISK
2019-05-16 CVE-2019-1008 Unspecified vulnerability in Microsoft Dynamics 365 and Dynamics CRM 2015
A security feature bypass vulnerability exists in Dynamics On Premise, aka 'Microsoft Dynamics On-Premise Security Feature Bypass'.
network
microsoft
4.3
2018-11-14 CVE-2018-8609 Improper Encoding or Escaping of Output vulnerability in Microsoft Dynamics 365 8.2
A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) version 8 when the server fails to properly sanitize web requests to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Remote Code Execution Vulnerability." This affects Microsoft Dynamics 365.
network
low complexity
microsoft CWE-116
6.5
2018-11-14 CVE-2018-8608 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.2
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365.
network
microsoft CWE-79
3.5
2018-11-14 CVE-2018-8607 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.2
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365.
network
microsoft CWE-79
3.5
2018-11-14 CVE-2018-8606 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.2
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365.
network
microsoft CWE-79
3.5
2018-11-14 CVE-2018-8605 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.2
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365.
network
microsoft CWE-79
3.5