CVE-2024-43460

Improper authorization in Dynamics 365 Business Central resulted in a vulnerability that allows an authenticated attacker to elevate privileges over a network.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:dynamics_365_business_central:-:-:*:*:*:*:*:*

History

25 Sep 2024, 19:18

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.1
v2 : unknown
v3 : 8.8
First Time Microsoft
Microsoft dynamics 365 Business Central
CPE cpe:2.3:a:microsoft:dynamics_365_business_central:-:-:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43460 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43460 - Patch, Vendor Advisory

20 Sep 2024, 12:30

Type Values Removed Values Added
Summary
  • (es) Una autorización incorrecta en Dynamics 365 Business Central provocó una vulnerabilidad que permite a un atacante autenticado elevar privilegios en una red.

17 Sep 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-17 19:15

Updated : 2024-09-25 19:18


NVD link : CVE-2024-43460

Mitre link : CVE-2024-43460

CVE.ORG link : CVE-2024-43460


JSON object : View

Products Affected

microsoft

  • dynamics_365_business_central
CWE
NVD-CWE-noinfo CWE-285

Improper Authorization