PT-2022-5968 · Microsoft · Dynamics Nav+1

Yiming Xiang

·

Published

2022-12-13

·

Updated

2023-03-10

·

CVE-2022-41127

CVSS v3.1

8.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) (affected versions not specified)
Description The issue is related to insufficient input validation in Microsoft Dynamics 365 Business Central and Microsoft Dynamics NAV, which can be exploited by a remote attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2022-07396
CVE-2022-41127

Affected Products

Dynamics 365 Business Central
Dynamics Nav