Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-74591
HistoryApr 15, 2022 - 12:00 a.m.

Microsoft Dynamics 365 (on-premises) Remote Code Execution Vulnerability

2022-04-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
15

0.009 Low

EPSS

Percentile

82.7%

Microsoft Dynamics is a suite of ERP business solutions for multinational companies from Microsoft Corporation (USA). A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises), which includes financial management, production management, and business intelligence management. The vulnerability stems from a failure of the network system or product to properly filter specific elements of code segments during external input data construction. An attacker could use this vulnerability to execute arbitrary code on the system.