CVE-2020-0905Microsoft Dynamics 365 Business Central 2019 Release Wave 2 vulnerability

4 documents4 sources
Severity
8.0HIGHNVD
EPSS
32.9%
top 3.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 12
Latest updateMay 24

Description

An remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics Business Central Remote Code Execution Vulnerability'.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:HExploitability: 2.1 | Impact: 5.9

Affected Packages10 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3xwp-cg99-2wx2: An remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics Business Central Remote Code Execution Vulnerabili2022-05-24
CVEList
CVE-2020-0905: An remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics Business Central Remote Code Execution Vulnerabili2020-03-12

📋Vendor Advisories

1
Microsoft
Dynamics Business Central Remote Code Execution Vulnerability2020-03-10
CVE-2020-0905 — Microsoft vulnerability | cvebase