Sharepoint Foundation
by Microsoft
CVEs (231)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-0604 | Cri | 0.93 | 9.8 | 1.00 | KEV | Mar 5, 2019 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0594. | |
| CVE-2023-21716 | Cri | 0.70 | 9.8 | 0.82 | Feb 14, 2023 | Microsoft Word Remote Code Execution Vulnerability | ||
| CVE-2020-16952 | Hig | 0.65 | 8.6 | 0.71 | Oct 16, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application… | ||
| CVE-2020-1595 | Cri | 0.65 | 9.9 | 0.02 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application pool and the… | ||
| CVE-2022-44690 | Hig | 0.64 | 8.8 | 0.82 | Dec 13, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2020-1210 | Cri | 0.64 | 9.9 | 0.02 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application… | ||
| CVE-2020-1025 | Cri | 0.64 | 9.8 | 0.06 | Jul 14, 2020 | An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validation. An attacker who successfully exploited the vulnerability could bypass authentication and achieve improper access. To exploit… | ||
| CVE-2022-38053 | Hig | 0.63 | 8.8 | 0.76 | Oct 11, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-31181 | Hig | 0.63 | 8.8 | 0.30 | May 11, 2021 | Microsoft SharePoint Remote Code Execution Vulnerability | ||
| CVE-2020-1181 | Hig | 0.63 | 8.8 | 0.69 | Jun 9, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls, aka 'Microsoft SharePoint Server Remote Code Execution Vulnerability'. | ||
| CVE-2023-21742 | Hig | 0.62 | 8.8 | 0.56 | Jan 10, 2023 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2022-37961 | Hig | 0.61 | 8.8 | 0.50 | Sep 13, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2022-35823 | Hig | 0.61 | 8.8 | 0.53 | Sep 13, 2022 | Microsoft SharePoint Remote Code Execution Vulnerability | ||
| CVE-2021-28474 | Hig | 0.61 | 8.8 | 0.51 | May 11, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2020-0932 | Hig | 0.60 | 8.8 | 0.31 | Apr 15, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929,… | ||
| CVE-2022-22005 | Hig | 0.59 | 8.8 | 0.17 | Feb 9, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2020-1439 | Hig | 0.59 | 8.8 | 0.20 | Jul 14, 2020 | A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails to check the source markup of XML file input, aka 'PerformancePoint Services Remote Code Execution Vulnerability'. | ||
| CVE-2022-29108 | Hig | 0.58 | 8.8 | 0.12 | May 10, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-27076 | Hig | 0.58 | 8.8 | 0.14 | Mar 11, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-24066 | Hig | 0.58 | 8.8 | 0.06 | Feb 25, 2021 | Microsoft SharePoint Remote Code Execution Vulnerability |
- risk 0.93cvss 9.8epss 1.00
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0594.
- risk 0.70cvss 9.8epss 0.82
Microsoft Word Remote Code Execution Vulnerability
- risk 0.65cvss 8.6epss 0.71
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…
- risk 0.65cvss 9.9epss 0.02
A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application pool and the…
- risk 0.64cvss 8.8epss 0.82
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.64cvss 9.9epss 0.02
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…
- risk 0.64cvss 9.8epss 0.06
An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validation. An attacker who successfully exploited the vulnerability could bypass authentication and achieve improper access. To exploit…
- risk 0.63cvss 8.8epss 0.76
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.63cvss 8.8epss 0.30
Microsoft SharePoint Remote Code Execution Vulnerability
- risk 0.63cvss 8.8epss 0.69
A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls, aka 'Microsoft SharePoint Server Remote Code Execution Vulnerability'.
- risk 0.62cvss 8.8epss 0.56
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.61cvss 8.8epss 0.50
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.61cvss 8.8epss 0.53
Microsoft SharePoint Remote Code Execution Vulnerability
- risk 0.61cvss 8.8epss 0.51
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.60cvss 8.8epss 0.31
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929,…
- risk 0.59cvss 8.8epss 0.17
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.59cvss 8.8epss 0.20
A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails to check the source markup of XML file input, aka 'PerformancePoint Services Remote Code Execution Vulnerability'.
- risk 0.58cvss 8.8epss 0.12
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.14
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.06
Microsoft SharePoint Remote Code Execution Vulnerability
Page 1 of 12