Tag
#Microsoft Dynamics 365 Sales
CVE-2024-49053: Microsoft Dynamics 365 Sales Spoofing Vulnerability
**According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?** The user would have to click on a specially crafted URL to be compromised by the attacker.
CVE-2023-36030: Microsoft Dynamics 365 Sales Spoofing Vulnerability
**According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability?** The vulnerability is in the web server, but the malicious scripts execute in the victim’s browser on their machine.