Skip to main content
High

CVE-2024-35248

Microsoft Dynamics 365 Business Central Elevation of Privilege vulnerability

Microsoft·Microsoft Dynamics 365 Business Central Elevation of Privilege

MSRC advisory July 20, 2026

Alert details

Source feed
Microsoft MSRC
CVE ID
CVE-2024-35248
CWE
CWE-1390CWE-287
Affected products
Microsoft Dynamics 365 Business Central Elevation of Privilege · Microsoft Microsoft Dynamics 365 Business Central Elevation of Privilege · Microsoft

What happened

Updated the build numbers. This is an informational update only.

What it means for your business

Microsoft Dynamics 365 Business Central Elevation of Privilege vulnerability (CVE-2024-35248) was added to Microsoft’s security update guidance. Updated the build numbers. This is an informational update only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

CVSS score

7.3 (High)

EPSS probability

0.95%

Sources

Related briefs

HighMicrosoft MSRC

CVE-2024-38225

Microsoft Dynamics 365 Business Central Elevation of Privilege vulnerability

Microsoft Dynamics 365 Business Central Elevation of Privilege vulnerability (CVE-2024-38225) was added to Microsoft’s security update guidance. Updated the build numbers. This is an informational update only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-40417

Microsoft Dynamics 365 Business Central Elevation of Privilege vulnerability

Microsoft Dynamics 365 Business Central Elevation of Privilege vulnerability (CVE-2026-40417) was added to Microsoft’s security update guidance. Updated the build numbers. This is an informational update only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

HighMicrosoft MSRC

CVE-2021-34474

Microsoft Dynamics 365 Business Central Remote Code Execution vulnerability

Microsoft Dynamics 365 Business Central Remote Code Execution vulnerability (CVE-2021-34474) was added to Microsoft’s security update guidance. Updated the build numbers. This is an informational update only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

MediumMicrosoft MSRC

CVE-2021-36946

Microsoft Dynamics Business Central Cross-site Scripting vulnerability

Microsoft Dynamics Business Central Cross-site Scripting vulnerability (CVE-2021-36946) was added to Microsoft’s security update guidance. Updated the build numbers. This is an informational update only. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.