Lucene search

K
mscveMicrosoftMS:CVE-2022-23273
HistoryFeb 08, 2022 - 8:00 a.m.

Microsoft Dynamics GP Elevation Of Privilege Vulnerability

2022-02-0808:00:00
Microsoft
msrc.microsoft.com
10
dynamics gp
elevation
privilege
vulnerability

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N

AI Score

8

Confidence

High

EPSS

0.001

Percentile

28.0%

Affected configurations

Vulners
Node
microsoftdynamics_gpRange<18.4.1434
VendorProductVersionCPE
microsoftdynamics_gp*cpe:2.3:a:microsoft:dynamics_gp:*:*:*:*:*:*:*:*

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N

AI Score

8

Confidence

High

EPSS

0.001

Percentile

28.0%

Related for MS:CVE-2022-23273