Microsoft Dynamics 365 Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) Vulnerability
Microsoft Dynamics 365 suffers from improper neutralization of input during web page generation (‘Cross-site Scripting’) vulnerability
The information has been provided by Vendor
The original article can be found at:https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1063
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka ‘Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability’.
Microsoft Dynamics 365