Vulnerabilities > Microsoft > Dynamics 365 > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-04-11 CVE-2023-28309 Cross-site Scripting vulnerability in Microsoft Dynamics 365
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-03-14 CVE-2023-24922 Unspecified vulnerability in Microsoft Dynamics 365 9.1
Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2022-01-11 CVE-2022-21932 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
Microsoft Dynamics 365 Customer Engagement Cross-Site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2020-08-17 CVE-2020-1591 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server.
network
low complexity
microsoft CWE-79
5.4
2020-05-21 CVE-2020-1063 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.2/9.0
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'.
network
low complexity
microsoft CWE-79
5.4
2020-01-24 CVE-2018-8654 Improper Privilege Management vulnerability in Microsoft Dynamics 365 8.0
An elevation of privilege vulnerability exists in Microsoft Dynamics 365 Server, aka 'Microsoft Dynamics 365 Elevation of Privilege Vulnerability'.
network
low complexity
microsoft CWE-269
6.5
2020-01-14 CVE-2020-0656 Cross-site Scripting vulnerability in Microsoft Dynamics 365 7.0
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'.
network
low complexity
microsoft CWE-79
5.4
2019-10-10 CVE-2019-1375 Cross-site Scripting vulnerability in Microsoft Dynamics 365
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'.
network
low complexity
microsoft CWE-79
5.4
2019-05-16 CVE-2019-1008 Unspecified vulnerability in Microsoft Dynamics 365 and Dynamics CRM 2015
A security feature bypass vulnerability exists in Dynamics On Premise, aka 'Microsoft Dynamics On-Premise Security Feature Bypass'.
network
high complexity
microsoft
5.9
2018-11-14 CVE-2018-8608 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.0/8.2
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web request to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Cross Site Scripting Vulnerability." This affects Microsoft Dynamics 365.
network
low complexity
microsoft CWE-79
5.4