Vulnerability Details CVE-2018-8609
A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) version 8 when the server fails to properly sanitize web requests to an affected Dynamics server, aka "Microsoft Dynamics 365 (on-premises) version 8 Remote Code Execution Vulnerability." This affects Microsoft Dynamics 365.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.31
EPSS Ranking 96.5%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2018-8609
-
cpe:2.3:a:microsoft:dynamics_365:8.0
-
cpe:2.3:a:microsoft:dynamics_365:8.2