Page 7 of 341 results (0.009 seconds)

CVSS: 8.8EPSS: 18%CPEs: 3EXPL: 2

11 May 2021 — Microsoft SharePoint Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota de Microsoft SharePoint This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft SharePoint. Authentication is required to exploit this vulnerability. The specific flaw exists within the handling of server-side controls in WebParts. By specifying a control using a non-canonical string, an unsafe server-side control can be instantiated. An attacker can l... • https://packetstorm.news/files/id/163208 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 8.8EPSS: 4%CPEs: 3EXPL: 0

11 May 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint. Este ID de CVE es diferente de CVE-2021-26418, CVE-2021-28478 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31172 • CWE-290: Authentication Bypass by Spoofing •

CVSS: 8.8EPSS: 2%CPEs: 3EXPL: 0

11 May 2021 — Microsoft SharePoint Server Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Microsoft SharePoint Server • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31173 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 4.4EPSS: 0%CPEs: 3EXPL: 0

11 May 2021 — Microsoft SharePoint Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Microsoft SharePoint • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31171 •

CVSS: 8.8EPSS: 3%CPEs: 3EXPL: 0

11 May 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint. Este ID de CVE es diferente de CVE-2021-26418, CVE-2021-31172 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28478 • CWE-290: Authentication Bypass by Spoofing •

CVSS: 8.8EPSS: 11%CPEs: 3EXPL: 0

11 May 2021 — Microsoft SharePoint Server Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota de Microsoft SharePoint Server This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft SharePoint. Authentication is required to exploit this vulnerability. The specific flaw exists within the handling of server-side controls. By specifying a control using a non-canonical string, an unsafe server-side control can be instantiated. An attacker can... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28474 • CWE-436: Interpretation Conflict •

CVSS: 8.8EPSS: 0%CPEs: 3EXPL: 0

11 May 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint. Este ID de CVE es diferente de CVE-2021-28478, CVE-2021-31172 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26418 • CWE-290: Authentication Bypass by Spoofing •

CVSS: 7.8EPSS: 2%CPEs: 14EXPL: 0

13 Apr 2021 — Microsoft Word Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota de Microsoft Word This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of DOC files. The issue results from the lack of validating the existence of an object prior to performi... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28453 •

CVSS: 6.5EPSS: 1%CPEs: 4EXPL: 0

13 Apr 2021 — Microsoft SharePoint Denial of Service Vulnerability Una Actualización de una Denegación de Servicio de Microsoft SharePoint • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-28450 •

CVSS: 5.8EPSS: 0%CPEs: 3EXPL: 0

11 Mar 2021 — Microsoft SharePoint Server Spoofing Vulnerability Una Vulnerabilidad de Suplantación de Identidad de Microsoft SharePoint • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-24104 •