Patch Tuesday · September 14, 2021
1 CVEs

Released 2021-09-14 by the Microsoft Security Response Center. Mirrored into Vulnetix VDB with CSAF + VEX downloads.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). Each row also links to the raw CSAF and VEX documents stored on the Vulnetix artefact mirror.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

msrc_CVE-2021-40440

PoC exploitImportantExploitation Less Likely

Tracking ID msrc_CVE-2021-40440 · revision 2

Other

ProductStatusFixed inKB
Microsoft Dynamics 365 Business Central 2020 Release Wave 2 – Update 17.10 <17.0.29460 known_affected 17.0.29460 5006075
Microsoft Dynamics 365 Business Central 2020 Release Wave 2 – Update 17.10 17.0.29460 fixed 17.0.29460
Microsoft Dynamics 365 Business Central 2021 Release Wave 1 - Update 18.5 <18.0.29486 known_affected 18.0.29486 5006076
Microsoft Dynamics 365 Business Central 2021 Release Wave 1 - Update 18.5 18.0.29486 fixed 18.0.29486
CSAF MSRC advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.