CVE-2014-0261: Microsoft Dynamics Ax

Medium severity, CVSS 4.0. EPSS: 10.3% chance of exploitation in the next 30 days.

Microsoft Dynamics AX 4.0 SP2, 2009 SP1, 2012, and 2012 R2 allows remote authenticated users to cause a denial of service (instance outage) via crafted data to an Application Object Server (AOS) instance, aka "Query Filter DoS Vulnerability."

Affected products

  • Microsoft Dynamics Ax: version 4.0 only; version 2009 only; version 2012 only

Published 2014-01-15. Last modified 2026-06-17.