Microsoft

Sharepoint Enterprise Server

256 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 38.46%
  • Published 11.09.2019 22:15:18
  • Last modified 21.11.2024 04:36:25

A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1257, CVE-2019-1296.

  • EPSS 38.46%
  • Published 11.09.2019 22:15:18
  • Last modified 21.11.2024 04:36:25

A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1257, CVE-2019-1295.

  • EPSS 24.14%
  • Published 11.09.2019 22:15:16
  • Last modified 21.11.2024 04:36:21

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-129...

  • EPSS 11.22%
  • Published 11.09.2019 22:15:16
  • Last modified 21.11.2024 04:36:21

An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'.

  • EPSS 5.04%
  • Published 11.09.2019 22:15:16
  • Last modified 21.11.2024 04:36:21

A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically ...

  • EPSS 0.6%
  • Published 14.08.2019 21:15:18
  • Last modified 21.11.2024 04:36:14

An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated attacker who successfully exploited the vulnerability could hijack the session of another user. To exploit this vulnerability, th...

  • EPSS 0.53%
  • Published 14.08.2019 21:15:18
  • Last modified 21.11.2024 04:36:14

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a spe...

  • EPSS 12.4%
  • Published 14.08.2019 21:15:17
  • Last modified 21.11.2024 04:36:13

A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security...

  • EPSS 0.58%
  • Published 15.07.2019 19:15:21
  • Last modified 28.02.2025 21:15:14

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'.

  • EPSS 2.93%
  • Published 15.07.2019 19:15:16
  • Last modified 21.11.2024 04:35:49

An authentication bypass vulnerability exists in Windows Communication Foundation (WCF) and Windows Identity Foundation (WIF), allowing signing of SAML tokens with arbitrary symmetric keys, aka 'WCF/WIF SAML Token Authentication Bypass Vulnerability'...