CVE-2024-21395

Severity
8.2HIGH
EPSS
0.2%
top 57.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 13

Description

Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:NExploitability: 2.8 | Impact: 4.7

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
CVEList
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability2024-02-13
GHSA
GHSA-hrqx-cgrg-w5g9: Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability2024-02-13

📋Vendor Advisories

1
Microsoft
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability2024-02-13
CVE-2024-21395 (HIGH CVSS 8.2) | Microsoft Dynamics 365 (on-premises | cvebase.io