CVE-2024-43476

Severity
5.4MEDIUM
EPSS
0.5%
top 35.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 10

Description

Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:NExploitability: 2.3 | Impact: 4.7

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-gvc4-cjm6-v27m: Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability2024-09-10
CVEList
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability2024-09-10

📋Vendor Advisories

1
Microsoft
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability2024-09-10
CVE-2024-43476 (MEDIUM CVSS 5.4) | Microsoft Dynamics 365 (on-premises | cvebase.io