CVE Database
/

CVE-2022-41127

Back to search

CVE-2022-41127

Published: Dec 13, 2022

Modified: Jul 22, 2025

PUBLISHED

CVSS v3.1

8.5

HIGH

Description

Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability

VendorProductVersions

Microsoft

Microsoft Dynamics NAV 2016

affected
1.0 - < Build 52203

Microsoft

Microsoft Dynamics NAV 2017

affected
1.0 - < Build 30712

Microsoft

Microsoft Dynamics NAV 2018

affected
1.0 - < Build 49497

Microsoft

Microsoft Dynamics NAV 2015

affected
1.0 - < 52204

Microsoft

Dynamics 365 Business Central Spring 2019 Update

affected
14.0.0 - < App Build 14.43.49498, Platform Build 14.0.49494

Microsoft

Dynamics 365 Business Central 2019 Release Wave 2 (On-Premise)

affected
15.0.0 - < App Build 15.17.48428, Platform Build 15.0.48

Microsoft

Microsoft Dynamics 365 Business Central 2020 Release Wave 2

affected
17.0.0 - < App Build 17.17.38111, Platform Build 17.0.38061

Microsoft

Microsoft Dynamics 365 Business Central 2020 Release Wave 1

affected
16.0.0 - < App Build 16.19.35126, Platform Build 16.35120

Microsoft

Microsoft Dynamics 365 Business Central 2022 Release Wave 1

affected
20.0.0 - < App Build 20.8.49971, Platform Build 20.0.49947

Microsoft

Microsoft Dynamics 365 Business Central 2021 Release Wave 2

affected
19.0.0 - < App Build 19.14.49970, Platform Build 19.0.49925

Microsoft

Microsoft Dynamics 365 Business Central 2022 Release Wave 2

affected
21.0.0 - < App Build 21.2.49990, Platform Build 21.0.49984

Microsoft

Microsoft Dynamics 365 Business Central 2021 Release Wave 1

affected
18.0.0 - < App Build 18.18.46920, Platform Build 18.0.46905

Microsoft

Microsoft Dynamics NAV 2013 R2

affected
1.0 - < 52297

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C

Attack Vector

Network

Attack Complexity

High

Privileges Required

Low

User Interaction

None

Scope

Changed

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now