CVE-2024-38225
Severity
9.8CRITICAL
EPSS
6.1%
top 9.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 10
Description
Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages4 packages
▶CVEListV5microsoft/microsoft_dynamics_365_business_central_2023_release_wave_122.0.0 — App Build 22.16.64731, Platform Build 22.0.64727
▶CVEListV5microsoft/microsoft_dynamics_365_business_central_2023_release_wave_223.0.0 — App Build 24.4. 22925, Platform Build 24.0. 22865
▶CVEListV5microsoft/microsoft_dynamics_365_business_central_2024_release_wave_124.0 — App Build 23.10.22604, Platform Build 23.0.22561