Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 25.0 (custom) before 25.18
affected
28.0 (custom) before 28.1
affected
26.0 (custom) before 26.12
affected
27.0 (custom) before 27.6
affected
Description
Weak authentication in Dynamics Business Central allows an authorized attacker to elevate privileges locally.
Problem types
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2026-40417 (Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability)