Sharepoint Foundation
by Microsoft
CVEs (231)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-1460 | Hig | 0.56 | 8.6 | 0.04 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a specially crafted page to perform actions… | ||
| CVE-2020-1453 | Hig | 0.56 | 8.6 | 0.02 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application… | ||
| CVE-2020-1452 | Hig | 0.56 | 8.6 | 0.02 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application… | ||
| CVE-2020-1200 | Hig | 0.56 | 8.6 | 0.02 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application… | ||
| CVE-2018-8284 | Hig | 0.56 | 8.1 | 0.40 | Jul 11, 2018 | A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".NET Framework Remote Code Injection Vulnerability." This affects Microsoft .NET Framework 2.0, Microsoft .NET Framework 3.0, Microsoft .NET Framework… | ||
| CVE-2020-1576 | Hig | 0.55 | 8.5 | 0.02 | Sep 11, 2020 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application… | ||
| CVE-2022-21837 | Hig | 0.54 | 8.3 | 0.03 | Jan 11, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-41344 | Hig | 0.53 | 8.1 | 0.06 | Oct 13, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-34520 | Hig | 0.53 | 8.1 | 0.04 | Jul 14, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-31950 | Hig | 0.53 | 7.6 | 0.05 | Jun 8, 2021 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2020-17118 | Hig | 0.53 | 8.1 | 0.04 | Dec 10, 2020 | Microsoft SharePoint Remote Code Execution Vulnerability | ||
| CVE-2022-24472 | Hig | 0.52 | 8.0 | 0.02 | Apr 15, 2022 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2022-21987 | Hig | 0.52 | 8.0 | 0.02 | Feb 9, 2022 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2021-1726 | Hig | 0.52 | 8.0 | 0.02 | Feb 25, 2021 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2021-1718 | Hig | 0.52 | 8.0 | 0.03 | Jan 12, 2021 | Microsoft SharePoint Server Tampering Vulnerability | ||
| CVE-2021-1712 | Hig | 0.52 | 8.0 | 0.02 | Jan 12, 2021 | Microsoft SharePoint Elevation of Privilege Vulnerability | ||
| CVE-2020-17115 | Hig | 0.52 | 8.0 | 0.02 | Dec 10, 2020 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2020-17016 | Hig | 0.52 | 8.0 | 0.03 | Nov 11, 2020 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2020-0892 | Hig | 0.52 | 7.8 | 0.12 | Mar 12, 2020 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0851, CVE-2020-0852, CVE-2020-0855. | ||
| CVE-2017-0281 | Hig | 0.52 | 7.8 | 0.16 | May 12, 2017 | Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2016, Office Online Server 2016, Office Web Apps 2010 SP2,Office Web Apps 2013 SP1, Project Server 2013 SP1, SharePoint Enterprise Server 2013 SP1, SharePoint Enterprise Server 2016, SharePoint Foundation 2013… |
- risk 0.56cvss 8.6epss 0.04
A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a specially crafted page to perform actions…
- risk 0.56cvss 8.6epss 0.02
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…
- risk 0.56cvss 8.6epss 0.02
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…
- risk 0.56cvss 8.6epss 0.02
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…
- risk 0.56cvss 8.1epss 0.40
A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".NET Framework Remote Code Injection Vulnerability." This affects Microsoft .NET Framework 2.0, Microsoft .NET Framework 3.0, Microsoft .NET Framework…
- risk 0.55cvss 8.5epss 0.02
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…
- risk 0.54cvss 8.3epss 0.03
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.06
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.04
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.53cvss 7.6epss 0.05
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.53cvss 8.1epss 0.04
Microsoft SharePoint Remote Code Execution Vulnerability
- risk 0.52cvss 8.0epss 0.02
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.52cvss 8.0epss 0.02
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.52cvss 8.0epss 0.02
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.52cvss 8.0epss 0.03
Microsoft SharePoint Server Tampering Vulnerability
- risk 0.52cvss 8.0epss 0.02
Microsoft SharePoint Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.02
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.52cvss 8.0epss 0.03
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.52cvss 7.8epss 0.12
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0851, CVE-2020-0852, CVE-2020-0855.
- risk 0.52cvss 7.8epss 0.16
Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2016, Office Online Server 2016, Office Web Apps 2010 SP2,Office Web Apps 2013 SP1, Project Server 2013 SP1, SharePoint Enterprise Server 2013 SP1, SharePoint Enterprise Server 2016, SharePoint Foundation 2013…
Page 4 of 12