Page 36 of 226 results (0.007 seconds)

CVSS: 5.4EPSS: 0%CPEs: 3EXPL: 0

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft Project Server, Microsoft SharePoint. This CVE ID is unique from CVE-2018-8252. Existe una vulnerabilidad de elevación de privilegios de elevación de privilegios cuando Microsoft SharePoint Server no sanea correctamente una petición web especialmente manipulada enviada a un servidor SharePoint afectado. Esto también se conoce como "Microsoft SharePoint Elevation of Privilege Vulnerability." • http://www.securityfocus.com/bid/104325 http://www.securitytracker.com/id/1041106 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8254 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 2EXPL: 0

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint. This CVE ID is unique from CVE-2018-8149, CVE-2018-8156, CVE-2018-8168. Existe una vulnerabilidad de elevación de privilegios de elevación de privilegios cuando Microsoft SharePoint Server no sanea correctamente una petición web especialmente manipulada enviada a un servidor SharePoint afectado. Esto también se conoce como "Microsoft SharePoint Elevation of Privilege Vulnerability." • http://www.securityfocus.com/bid/104047 http://www.securitytracker.com/id/1040856 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8155 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 8.8EPSS: 0%CPEs: 3EXPL: 0

Microsoft SharePoint Foundation 2010, Microsoft SharePoint Server 2013 and Microsoft SharePoint Server 2016 allow an elevation of privilege vulnerability due to the way web requests are handled, aka "Microsoft SharePoint Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0789. Microsoft SharePoint Foundation 2010, Microsoft SharePoint Server 2013 y Microsoft SharePoint Server 2016 permiten una vulnerabilidad de elevación de privilegios debido a la forma en la que se gestionan las peticiones web. Esto también se conoce como "Microsoft SharePoint Elevation of Privilege Vulnerability". Este CVE es diferente de CVE-2018-0789. • http://www.securityfocus.com/bid/102391 http://www.securitytracker.com/id/1040150 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0790 •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 0

An elevation of privilege vulnerability exists in Microsoft SharePoint Foundation 2013 Service Pack 1 when it does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Cross Site Scripting Vulnerability". Existe una vulnerabilidad de elevación de privilegios en Microsoft SharePoint Foundation 2013 Service Pack 1 cuando no sanitiza correctamente una petición web especialmente manipulada a un servidor SharePoint afectado. Esto también se conoce como "Microsoft SharePoint Cross Site Scripting Vulnerability". • http://www.securityfocus.com/bid/100753 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8745 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 0

Microsoft SharePoint Foundation 2013 SP1 allows an elevation of privilege vulnerability when it does not properly sanitize a specially crafted web request, aka "Microsoft SharePoint XSS Vulnerability". Microsoft SharePoint Foundation 2013 SP1 presenta una vulnerabilidad de elevación de privilegios cuando no desinfecta adecuadamente una solicitud web especialmente modificada, también conocida como "Microsoft SharePoint XSS Vulnerability" • http://www.securityfocus.com/bid/98107 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0255 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •