CVE-2025-29821

I

mproper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally.

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:dynamics_365_business_central_2023:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2025:*:*:*:*:on-premise:*:*:*

History

12 Aug 2025, 16:09

Type Values Removed Values Added
First Time Microsoft dynamics 365 Business Central 2025
Microsoft dynamics 365 Business Central 2023
Microsoft dynamics 365 Business Central 2024
Microsoft
First Time Microsoft dynamics 365 Business Central 2025
Microsoft dynamics 365 Business Central 2023
Microsoft dynamics 365 Business Central 2024
Microsoft
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29821 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29821 - Vendor Advisory
CPE cpe:2.3:a:microsoft:dynamics_365_business_central_2023:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2025:*:*:*:*:on-premise:*:*:*
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29821 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29821 - Vendor Advisory
CPE cpe:2.3:a:microsoft:dynamics_365_business_central_2023:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2024:*:*:*:*:on-premise:*:*:*
cpe:2.3:a:microsoft:dynamics_365_business_central_2025:*:*:*:*:on-premise:*:*:*

09 Apr 2025, 20:03

Type Values Removed Values Added
Summary
  • (es) La validación de entrada incorrecta en Dynamics Business Central permite que un atacante autorizado divulgue información localmente.

08 Apr 2025, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-08 18:16

Updated : 2025-08-12 16:09


NVD link : CVE-2025-29821

Mitre link : CVE-2025-29821

CVE.ORG link : CVE-2025-29821


JSON object : View

CWE
CWE-20

Improper Input Validation