

Rewterz Threat Advisory – Multiple Microsoft Azure Vulnerabilities
February 20, 2023
Rewterz Threat Advisory – Multiple Fortinet FortiNAC Vulnerabilities
February 20, 2023
Rewterz Threat Advisory – Multiple Microsoft Azure Vulnerabilities
February 20, 2023
Rewterz Threat Advisory – Multiple Fortinet FortiNAC Vulnerabilities
February 20, 2023Severity
High
Analysis Summary
CVE-2023-21778
Microsoft Dynamics Unified Service Desk could allow a remote attacker to execute arbitrary code on the system. By persuading a victim to open a specially-crafted content, an attacker could exploit this vulnerability to call the victim’s local files in the Resources directory and execute Windows commands that are outside of the Dynamics application
Impact
- Cross-Site Scripting
Indicators Of Compromise
CVE
- Code Execution
Affected Vendors
Microsoft
Affected Products
- Microsoft Dynamics 365 8.2 on-premise
- Microsoft Dynamics 365 9.1 on-premises
- Microsoft Dynamics 365 9.0 on-premise
Remediation
Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.