CVE-2020-0852
- EPSS 33.65%
- Veröffentlicht 12.03.2020 16:15:18
- Zuletzt bearbeitet 21.11.2024 04:54:20
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0851, CVE-2020-08...
CVE-2019-1442
- EPSS 7.11%
- Veröffentlicht 12.11.2019 19:15:15
- Zuletzt bearbeitet 21.11.2024 04:36:42
A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a victim a specially crafted file, which could trick the victim into entering credentials, aka 'Microsoft Office Security Feature Bypas...
CVE-2019-1443
- EPSS 14.45%
- Veröffentlicht 12.11.2019 19:15:15
- Zuletzt bearbeitet 21.11.2024 04:36:42
An information disclosure vulnerability exists in Microsoft SharePoint when an attacker uploads a specially crafted file to the SharePoint Server.An authenticated attacker who successfully exploited this vulnerability could potentially leverage Share...
CVE-2019-1295
- EPSS 40.93%
- Veröffentlicht 11.09.2019 22:15:18
- Zuletzt bearbeitet 21.11.2024 04:36:25
A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1257, CVE-2019-1296.
CVE-2019-1296
- EPSS 40.93%
- Veröffentlicht 11.09.2019 22:15:18
- Zuletzt bearbeitet 21.11.2024 04:36:25
A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1257, CVE-2019-1295.
CVE-2019-1257
- EPSS 22.94%
- Veröffentlicht 11.09.2019 22:15:16
- Zuletzt bearbeitet 21.11.2024 04:36:21
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-129...
CVE-2019-1260
- EPSS 12.92%
- Veröffentlicht 11.09.2019 22:15:16
- Zuletzt bearbeitet 21.11.2024 04:36:21
An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'.
CVE-2019-1261
- EPSS 4.5%
- Veröffentlicht 11.09.2019 22:15:16
- Zuletzt bearbeitet 21.11.2024 04:36:21
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically ...
CVE-2019-1202
- EPSS 0.75%
- Veröffentlicht 14.08.2019 21:15:18
- Zuletzt bearbeitet 20.02.2026 21:18:45
An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated attacker who successfully exploited the vulnerability could hijack the session of another user. To exploit this vulnerability, th...
CVE-2019-1203
- EPSS 0.41%
- Veröffentlicht 14.08.2019 21:15:18
- Zuletzt bearbeitet 20.02.2026 21:18:45
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a spe...