Microsoft
Microsoft Dynamics GP: vulnerabilidades y CVE
Microsoft Dynamics GP tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-23274 | Alta (8.8) | 2.1% | — | 9 feb 2022 | Microsoft Dynamics GP Remote Code Execution Vulnerability |
| CVE-2022-23273 | Alta (8.8) | 2.2% | — | 9 feb 2022 | Microsoft Dynamics GP Elevation Of Privilege Vulnerability |
| CVE-2022-23272 | Alta (8.8) | 2.5% | — | 9 feb 2022 | Microsoft Dynamics GP Elevation Of Privilege Vulnerability |
| CVE-2022-23271 | Alta (8.8) | 3.8% | — | 9 feb 2022 | Microsoft Dynamics GP Elevation Of Privilege Vulnerability |
| CVE-2022-23269 | Media (5.4) | 1.2% | — | 9 feb 2022 | Microsoft Dynamics GP Spoofing Vulnerability |
| CVE-2010-2083 | Media (4) | 8.5% | — | 26 may 2010 | Microsoft Dynamics GP has a default value of ACCESS for the system password, which might make it easier for remote authenticated users to bypass intended access restrictions via unspecified vectors. |
| CVE-2010-2011 | Media (4) | 11% | — | 21 may 2010 | Microsoft Dynamics GP uses a substitution cipher to encrypt the system password field and unspecified other fields, which makes it easier for remote authenticated users to obtain sensitive information by decrypting a… |
| CVE-2006-5266 | Alta (7.5) | 16% | — | 31 dic 2006 | Multiple buffer overflows in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allow remote attackers to execute arbitrary code via (1) a crafted Distributed Process Manager (DPM) message to the (a) DPM… |
| CVE-2006-5265 | Media (5) | 10% | — | 31 dic 2006 | Unspecified vulnerability in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allows remote attackers to cause a denial of service (crash) via an invalid magic number in a Distributed Process Server (DPS)… |