VulnSea

sharepoint_foundation vulnerabilities

CVEs whose affected-version data names the sharepoint_foundation package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

13 CVEsRSS

CVE-2021-34520High· 8.10day
5y ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Microsoft SharePoint Server Remote Code Execution Vulnerability

Abyssalmicrosoft · sharepoint_foundationEPSS 4.4%via NVD
CVE-2021-34519Medium· 5.30day
5y ago

Microsoft SharePoint Server Information Disclosure Vulnerability

Microsoft SharePoint Server Information Disclosure Vulnerability

Midnightmicrosoft · sharepoint_foundationEPSS 6.1%via NVD
CVE-2021-34517Medium· 5.3
5y ago

Microsoft SharePoint Server Spoofing Vulnerability

Microsoft SharePoint Server Spoofing Vulnerability

Sunlitmicrosoft · sharepoint_foundationEPSS 1.9%via NVD
CVE-2021-34468High· 7.10day
5y ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Microsoft SharePoint Server Remote Code Execution Vulnerability

Abyssalmicrosoft · sharepoint_foundationEPSS 2.1%via NVD
CVE-2020-1107Medium· 5.4
6y ago

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a speciall…

Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.5%via NVD
CVE-2020-1106Medium· 6.1
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 4.0%via NVD
CVE-2020-1104Medium· 5.4
6y ago

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a speciall…

Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1103Medium· 6.5
6y ago

An information disclosure vulnerability exists where certain modes of the search function in Microsoft SharePoint Server are vulnerable to cross-site search attacks (a variant of cross-site request forgery, CSRF). When users are simultan…

An information disclosure vulnerability exists where certain modes of the search function in Microsoft SharePoint Server are vulnerable to cross-site search attacks (a variant of cross-site request forgery, CSRF). When users are simultan…

Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 2.4%via NVD
CVE-2020-1101Medium· 5.4
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1100Medium· 5.4
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1069High· 8.8
6y ago

A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls

A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a spe…

Twilightmicrosoft · sharepoint_enterprise_serverEPSS 4.0%via NVD
CVE-2020-1024High· 8.8
6y ago

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the c…

Twilightmicrosoft · sharepoint_enterprise_serverEPSS 3.7%via NVD
CVE-2020-1023High· 8.8
6y ago

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the c…

Twilightmicrosoft · sharepoint_enterprise_serverEPSS 3.7%via NVD
sharepoint_foundation vulnerabilities (CVEs) · VulnSea