Home Microsoft CVE-2024-21380
Back to Microsoft

CVE-2024-21380

Microsoft Dynamics Business Central/NAV

Microsoft CVSS 8 Updated March 14, 2026

Executive Risk Summary

"A vulnerability in Microsoft Dynamics Business Central/NAV could allow an attacker to disclose sensitive information. This vulnerability is related to information disclosure and could potentially be exploited by an attacker to gain unauthorized access to sensitive data."

Operational Audit Arsenal

Target Type Executable
Target Asset Microsoft.Dynamics.Nav.Server.exe
Standard Path %programfiles%\Microsoft Dynamics NAV\Service
PowerShell
# 🛠️ Senior Engineer Universal Audit
# Target: Microsoft.Dynamics.Nav.Server.exe (Executable)
$Targets = 'Microsoft.Dynamics.Nav.Server.exe'
$SearchPaths = @("$env:windir\System32", "$env:ProgramFiles", "${env:ProgramFiles(x86)}")

Get-ChildItem -Path $SearchPaths -Include $Targets -Recurse -ErrorAction SilentlyContinue | 
Select-Object FullName, @{Name="Version";Expression={$_.VersionInfo.ProductVersion}}

Patch Impact Forecast

Reboot Required Likely

Microsoft Dynamics Business Central/NAV services may be affected

Internal Work Notes

Apply latest security updates to Microsoft Dynamics Business Central/NAV to mitigate information disclosure vulnerability

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Related Microsoft Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.