Dynamics Nav

Vendor:

First CVE: Dec 12, 2018 · Active for 7 years

10
Total CVEs
More Total CVEs than 88% of tracked products
2.0
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Dynamics Nav over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 12, 2018
7 years ago
Most Recent CVE
Jul 14, 2026
10 days ago

CVE Severity & Scoring

Dynamics Nav10 CVEs
All CVEs352,231 CVEs
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (90.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (10.0%)
Attack Complexity
Low8 (80.0%)
High2 (20.0%)
Unknown0 (0.0%)
User Interaction
None5 (50.0%)
Unknown0 (0.0%)
Required5 (50.0%)
Privileges Required
Low7 (70.0%)
High1 (10.0%)
None2 (20.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Deserialization of untrusted data in Microsoft Dynamics NAV allows an unauthorized attacker to execute code over a network.
Jul 14, 20269.840NONO
Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability
Dec 13, 20228.528NONO
An remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics Business Central Remote Code Execution Vulnerability'.
Mar 12, 20208.024NONO
A remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics Business Central Remote Code Execution Vulnerability'.
Apr 15, 20208.023NONO
An information disclosure vulnerability exists when Microsoft Dynamics Business Central/NAV on-premise does not properly hide the value of a masked field when showing the records a
Apr 15, 20207.523NONO
Microsoft Dynamics Business Central Cross-site Scripting Vulnerability
Feb 25, 20216.122NONO
A cross site scripting vulnerability exists when Microsoft Dynamics NAV does not properly sanitize a specially crafted web request to an affected Dynamics NAV server, aka "Microsof
Dec 12, 20185.421NONO
Microsoft Dynamics Business Central/NAV Information Disclosure Vulnerability
Dec 10, 20206.520NONO
Microsoft Dynamics Business Central Cross-site Scripting Vulnerability
Aug 12, 20215.419NONO
Microsoft Business Central Information Disclosure Vulnerability
Nov 9, 20224.418NONO

Exploit Exposure

Signals from CVEs in this product scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (10 CVEs).

Media Mentions

Signals from CVEs in this product scope (10 CVEs).

Top CNAs Publishing CVEs For Dynamics Nav

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
201887.23.7%00
201777.04.1%00
201667.34.7%00
201557.25.7%00
201328.08.8%00