CVE-2025-29821
Microsoft Dynamics Business Central Information Disclosure Vulnerability
Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
Affected products
Microsoft · Microsoft Dynamics 365 Business Central 2023 Wave 2Microsoft · Microsoft Dynamics 365 Business Central 2024 Wave 1 2024Microsoft · Microsoft Dynamics 365 Business Central 2024 Wave 2Microsoft · Microsoft Dynamics 365 Business Central 2025 Wave 1Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →