CVE-2019-1202
- EPSS 0.6%
- Veröffentlicht 14.08.2019 21:15:18
- Zuletzt bearbeitet 20.02.2026 21:18:45
An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated attacker who successfully exploited the vulnerability could hijack the session of another user. To exploit this vulnerability, th...
CVE-2019-1203
- EPSS 0.44%
- Veröffentlicht 14.08.2019 21:15:18
- Zuletzt bearbeitet 20.02.2026 21:18:45
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a spe...
CVE-2019-1205
- EPSS 9.47%
- Veröffentlicht 14.08.2019 21:15:18
- Zuletzt bearbeitet 20.02.2026 21:18:46
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security...
CVE-2019-1201
- EPSS 11.3%
- Veröffentlicht 14.08.2019 21:15:17
- Zuletzt bearbeitet 20.02.2026 21:18:45
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security...
CVE-2019-1134
- EPSS 0.49%
- Veröffentlicht 15.07.2019 19:15:21
- Zuletzt bearbeitet 28.02.2025 21:15:14
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'.
CVE-2019-1006
- EPSS 2.93%
- Veröffentlicht 15.07.2019 19:15:16
- Zuletzt bearbeitet 21.11.2024 04:35:49
An authentication bypass vulnerability exists in Windows Communication Foundation (WCF) and Windows Identity Foundation (WIF), allowing signing of SAML tokens with arbitrary symmetric keys, aka 'WCF/WIF SAML Token Authentication Bypass Vulnerability'...
CVE-2019-1031
- EPSS 0.44%
- Veröffentlicht 12.06.2019 14:29:03
- Zuletzt bearbeitet 20.05.2025 18:15:38
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a spe...
CVE-2019-1032
- EPSS 0.44%
- Veröffentlicht 12.06.2019 14:29:03
- Zuletzt bearbeitet 20.05.2025 18:15:38
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a spe...
CVE-2019-1033
- EPSS 0.44%
- Veröffentlicht 12.06.2019 14:29:03
- Zuletzt bearbeitet 20.05.2025 18:15:38
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a spe...
CVE-2019-1034
- EPSS 13.21%
- Veröffentlicht 12.06.2019 14:29:03
- Zuletzt bearbeitet 20.05.2025 18:15:38
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security...