
CVE-2021-31181 – Microsoft SharePoint Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-31181
11 May 2021 — Microsoft SharePoint Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota de Microsoft SharePoint This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft SharePoint. Authentication is required to exploit this vulnerability. The specific flaw exists within the handling of server-side controls in WebParts. By specifying a control using a non-canonical string, an unsafe server-side control can be instantiated. An attacker can l... • https://packetstorm.news/files/id/163208 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2021-31172 – Microsoft SharePoint Server Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-31172
11 May 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint. Este ID de CVE es diferente de CVE-2021-26418, CVE-2021-28478 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31172 • CWE-290: Authentication Bypass by Spoofing •

CVE-2021-31173 – Microsoft SharePoint Server Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31173
11 May 2021 — Microsoft SharePoint Server Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Microsoft SharePoint Server • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31173 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2021-31171 – Microsoft SharePoint Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31171
11 May 2021 — Microsoft SharePoint Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Microsoft SharePoint • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31171 •

CVE-2021-28478 – Microsoft SharePoint Server Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-28478
11 May 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint. Este ID de CVE es diferente de CVE-2021-26418, CVE-2021-31172 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28478 • CWE-290: Authentication Bypass by Spoofing •

CVE-2021-28474 – Microsoft SharePoint Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-28474
11 May 2021 — Microsoft SharePoint Server Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota de Microsoft SharePoint Server This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft SharePoint. Authentication is required to exploit this vulnerability. The specific flaw exists within the handling of server-side controls. By specifying a control using a non-canonical string, an unsafe server-side control can be instantiated. An attacker can... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28474 • CWE-436: Interpretation Conflict •

CVE-2021-26418 – Microsoft SharePoint Server Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-26418
11 May 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint. Este ID de CVE es diferente de CVE-2021-28478, CVE-2021-31172 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26418 • CWE-290: Authentication Bypass by Spoofing •

CVE-2021-28453 – Microsoft Word Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-28453
13 Apr 2021 — Microsoft Word Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota de Microsoft Word This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of DOC files. The issue results from the lack of validating the existence of an object prior to performi... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28453 •

CVE-2021-28450 – Microsoft SharePoint Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2021-28450
13 Apr 2021 — Microsoft SharePoint Denial of Service Vulnerability Una Actualización de una Denegación de Servicio de Microsoft SharePoint • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28450 •

CVE-2021-24104 – Microsoft SharePoint Server Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-24104
11 Mar 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una Vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-24104 •