Lucene search

K
nvd[email protected]NVD:CVE-2022-41127
HistoryDec 13, 2022 - 7:15 p.m.

CVE-2022-41127

2022-12-1319:15:12
web.nvd.nist.gov
1
microsoft
dynamics nav
dynamics 365 business central
on premises
remote code execution
vulnerability

8.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

0.006 Low

EPSS

Percentile

79.0%

Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability

Affected configurations

NVD
Node
microsoftdynamics_365_business_centralMatch2019release_wave_2on-premise
OR
microsoftdynamics_365_business_centralMatch2019spring_update
OR
microsoftdynamics_365_business_centralMatch2020release_wave_1
OR
microsoftdynamics_365_business_centralMatch2020release_wave_2
OR
microsoftdynamics_365_business_centralMatch2021release_wave_1
OR
microsoftdynamics_365_business_centralMatch2021release_wave_2
OR
microsoftdynamics_365_business_centralMatch2022release_wave_1
OR
microsoftdynamics_navMatch2016
OR
microsoftdynamics_navMatch2017
OR
microsoftdynamics_navMatch2018

8.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

0.006 Low

EPSS

Percentile

79.0%