Microsoft
Microsoft Dataverse: vulnerabilidades y CVE
Microsoft Dataverse tiene 7 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses2
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-77903 | Alta (8.1) | 0.37% | — | 17 sept 2026 | Authentication bypass by spoofing in Microsoft Dataverse allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2026-1879 | Baja (2.1) | 0.26% | — | 1 abr 2026 | A vulnerability was detected in Harvard University IQSS Dataverse up to 6.8. This affects an unknown function of the file /ThemeAndWidgets.xhtml of the component Theme Customization. Performing a manipulation of the… |
| CVE-2025-29826 | Alta (8.8) | 0.83% | — | 13 may 2025 | Improper handling of insufficient permissions or privileges in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network. |
| CVE-2025-47732 | Crítica (9.8) | 3.5% | — | 8 may 2025 | Deserialization of untrusted data in Microsoft Dataverse allows an authorized attacker to execute code over a network. |
| CVE-2025-29807 | Alta (8.8) | 1.4% | — | 21 mar 2025 | Deserialization of untrusted data in Microsoft Dataverse allows an authorized attacker to execute code over a network. |
| CVE-2025-24053 | Alta (7.2) | 0.75% | — | 13 mar 2025 | Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network. |
| CVE-2024-38139 | Alta (8.8) | 0.75% | — | 15 oct 2024 | Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.