PT-2023-1796 · Microsoft · Dynamics 365 Unified Service Desk

Erik Donker

·

Published

2023-02-14

·

Updated

2024-05-29

·

CVE-2023-21778

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Dynamics Unified Service Desk (affected versions not specified)
Description The issue is related to incorrect code generation management in Microsoft Dynamics 365 Unified Service Desk, which can be exploited by a remote attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Command Injection

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2023-01392
CVE-2023-21778

Affected Products

Dynamics 365 Unified Service Desk