CVE-2020-1018
Published: Apr 15, 2020
Modified: Aug 4, 2024
Description
An information disclosure vulnerability exists when Microsoft Dynamics Business Central/NAV on-premise does not properly hide the value of a masked field when showing the records as a chart page.The attacker who successfully exploited the vulnerability could see the information that are in a masked field.The security update addresses the vulnerability by updating the rendering engine the Windows client to properly detect masked fields and render the content as masked., aka 'Microsoft Dynamics Business Central/NAV Information Disclosure'.
| Vendor | Product | Versions |
|---|---|---|
Microsoft | Microsoft Dynamics NAV 2016 | affected unspecified |
Microsoft | Microsoft Dynamics NAV 2017 | affected unspecified |
Microsoft | Microsoft Dynamics NAV 2018 | affected unspecified |
Microsoft | Microsoft Dynamics NAV 2015 | affected unspecified |
Microsoft | Microsoft Dynamics 365 BC On Premise | affected unspecified |
Microsoft | Dynamics 365 Business Central 2019 Spring Update | affected unspecified |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now