Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Davide107

Researcher fromING
#44582of 56,330
6.4Total CVSS
Vulnerabilities · 1
PT-2019-3187
6.4
2019-09-10
Microsoft · Sharepoint Server · CVE-2019-1262
**Name of the Vulnerable Software and Affected Versions** Microsoft SharePoint Foundation (affected versions not specified) Microsoft SharePoint Server (affected versions not specified) **Description** The issue is related to a lack of input sanitization, which can lead to cross-site scripting (XSS) attacks. An attacker could exploit this by sending a specially crafted web request to an affected server. Successful exploitation could allow the attacker to perform actions such as reading unauthorized content, using the victim's identity to change permissions or delete content, and injecting malicious content into the user's browser. **Recommendations** For Microsoft SharePoint Foundation, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Microsoft SharePoint Server, at the moment, there is no information about a newer version that contains a fix for this vulnerability.