CVE-2026-40417

Weak authentication in Dynamics Business Central allows an authorized attacker to elevate privileges locally.

high 7.8 CVSS 3.1
Published: May 12, 2026
Modified: Jun 3, 2026
Vendor: Microsoft
Product: Dynamics 365 Business Central
Versions: 2024,2025,2026