KLA50320
Multiple vulnerabilities in Microsoft Dynamics

Обновлено: 29/09/2023
Дата обнаружения
13/06/2023
Уровень угрозы
High
Описание

Multiple vulnerabilities were found in Microsoft Dynamics. Malicious users can exploit these vulnerabilities to spoof user interface.

Below is a complete list of vulnerabilities:

  1. A spoofing vulnerability in Microsoft Power Apps can be exploited remotely to spoof user interface.
  2. A spoofing vulnerability in Dynamics 365 Finance can be exploited remotely to spoof user interface.
Пораженные продукты

Dynamics 365 for Finance and Operations
Microsoft Power Apps

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2023-32024
CVE-2023-24896
Оказываемое влияние
?
SUI 
[?]
Связанные продукты
Microsoft Dynamics 365
CVE-IDS
CVE-2023-320245.0Warning
CVE-2023-248965.0Warning