QID 92083
Date Published: 2023-11-15
QID 92083: Microsoft Dynamics 365 Security Update for November 2023
Microsoft Dynamics 365 is a product line of enterprise resource planning and customer relationship management intelligent business applications.
Affected Software:
Microsoft Dynamics 365 (on-premises) prior to 9.0
Microsoft Dynamics 365 (on-premises) prior to 9.1
QID Detection Logic(Authenticated):
This authenticated QID flags vulnerable systems by detecting Vulnerable versions for file Microsoft.Crm.Setup.Server.exe:
Depending on the vulnerability being exploited, a remote attacker could conduct cross-site scripting (XSS) or spoofing attacks against a vulnerable resource.
Solution
Customers are advised to refer to refer to CVE-2023-36030, CVE-2023-36031, CVE-2023-36007, CVE-2023-36016, CVE-2023-36030 or CVE-2023-36410 for more details pertaining to this vulnerability.
Vendor References
- CVE-2023-36007 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36007 - CVE-2023-36016 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36016 - CVE-2023-36030 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36030 - CVE-2023-36031 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36031 - CVE-2023-36410 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36410
CVEs related to QID 92083
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2023-36007 |
|
||
| CVE-2023-36016 |
|
||
| CVE-2023-36030 |
|
||
| CVE-2023-36031 |
|
||
| CVE-2023-36410 |
|