QID 91991
Date Published: 2023-03-15
QID 91991: Microsoft Dynamics 365 Security Update for March 2023
Microsoft Dynamics 365 is a product line of enterprise resource planning and customer relationship management intelligent business applications.
Affected Software:
Microsoft Dynamics 365 (on-premises) V9.0
Microsoft Dynamics 365 (on-premises) V9.1
QID Detection Logic(Authenticated):
This authenticated QID flags vulnerable systems by detecting Vulnerable versions for file Microsoft.Crm.Setup.Server.exe:
Successful exploitation of this vulnerability can result in Cross-site Scripting and Information Disclosure Vulnerability
Solution
Customers are advised to refer to CVE-2023-24920 and CVE-2023-24879 and CVE-2023-24919 and CVE-2023-24922 and CVE-2023-24821 and CVE-2023-24891 for more details pertaining to this vulnerability.
Vendor References
- CVE-2023-24879 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24879 - CVE-2023-24891 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24891 - CVE-2023-24919 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24919 - CVE-2023-24920 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24920 - CVE-2023-24921 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24921 - CVE-2023-24922 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24922
CVEs related to QID 91991
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2023-24879 |
|
||
| CVE-2023-24891 |
|
||
| CVE-2023-24919 |
|
||
| CVE-2023-24920 |
|
||
| CVE-2023-24921 |
|
||
| CVE-2023-24922 |
|