CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

NCSC-2026-0348 [1.00] [M/H] Kwetsbaarheden verholpen in Microsoft Dynamics

unknownCVE-2026-65772CVE-2026-77897
Microsoft heeft 2 kwetsbaarheden verholpen in Dynamics, zowel online als on-premise. De kwetsbaarheden stellen een kwaadwillende in staat om zich verhoogde rechten toe te kennen, willekeurige code uit te voeren en/of toegang te krijgen tot gevoelige gegevens. Microsoft Dynamics 365: |----------------|------|-------------------------------------| | CVE-ID | CVSS | Impact | |----------------|------|-------------------------------------| | CVE-2026-65772 | 8,80 | Uitvoeren van willekeurige code | |----------------|------|-------------------------------------| Power Automate: |----------------|------|-------------------------------------| | CVE-ID | CVSS | Impact | |----------------|------|-------------------------------------| | CVE-2026-77897 | 7,00 | Verkrijgen van verhoogde rechten | |----------------|------|-------------------------------------|

Details

Source
NCSC-NL Advisories (NL · national-cert · site)
Severity
unknown
Published
2026-09-08
Exploitation
Not in CISA KEV at last sync

Original advisory: https://advisories.ncsc.nl/advisory?id=NCSC-2026-0348

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2026-65772coverage & exploitation statusNVD · CVE.org
CVE-2026-77897coverage & exploitation statusNVD · CVE.org

Same CVEs, other sources

How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.

Recent advisories for Kwetsbaarheden verholpen in

A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.

More from NCSC-NL Advisories