CVE-2025-29821

Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:dynamics_365_business_central_2023:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2025:*:*:*:*:on-premise:*:*:*

History

12 Aug 2025, 16:09

Type Values Removed Values Added
CPE cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2025:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2023:*:*:*:*:on-premise:*:*:*
First Time Microsoft dynamics 365 Business Central 2023
Microsoft dynamics 365 Business Central 2025
Microsoft
Microsoft dynamics 365 Business Central 2024
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29821 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29821 - Vendor Advisory

09 Apr 2025, 20:03

Type Values Removed Values Added
Summary
  • (es) La validación de entrada incorrecta en Dynamics Business Central permite que un atacante autorizado divulgue información localmente.

08 Apr 2025, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-08 18:16

Updated : 2025-08-12 16:09


NVD link : CVE-2025-29821

Mitre link : CVE-2025-29821

CVE.ORG link : CVE-2025-29821


JSON object : View

Products Affected

microsoft

  • dynamics_365_business_central_2023
  • dynamics_365_business_central_2024
  • dynamics_365_business_central_2025
CWE
CWE-20

Improper Input Validation