Back

HIGH

Microsoft Dynamics 365 Cross-site Scripting Vulnerability

Published Aug 6, 2024

Description

An unauthenticated attacker can exploit improper neutralization of input during web page generation in Microsoft Dynamics 365 to spoof over a network by tricking a user to click on a link.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Aug 6, 2024
Updated Jul 10, 2025
Reserved Jun 11, 2024
CISA Vulnrichment
Updated Aug 7, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner microsoft
Published Aug 6, 2024
Updated Jul 10, 2025
Exploited since n/a
EUVD-2024-37139