Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sharepoint foundation vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2015-1653
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2013 SP1 and SharePoint Server 2013 SP1 allows remote malicious users to inject arbitrary web script or HTML via a crafted request, aka "Microsoft SharePoint XSS Vulnerability."
Microsoft Sharepoint Foundation 2013
Microsoft Sharepoint Server 2013
3.5
CVSSv2
CVE-2015-1636
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2013 Gold and SP1 and SharePoint Server 2013 Gold and SP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted request, aka "Microsoft SharePoint XSS Vulnerability.&...
Microsoft Sharepoint Server 2013
Microsoft Sharepoint Foundation 2013
4.3
CVSSv2
CVE-2012-0144
Cross-site scripting (XSS) vulnerability in themeweb.aspx in Microsoft Office SharePoint Server 2010 Gold and SP1 and SharePoint Foundation 2010 Gold and SP1 allows remote malicious users to inject arbitrary web script or HTML via JavaScript sequences in a URL, aka "XSS in t...
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
4.3
CVSSv2
CVE-2012-0145
Cross-site scripting (XSS) vulnerability in wizardlist.aspx in Microsoft Office SharePoint Server 2010 Gold and SP1 and SharePoint Foundation 2010 Gold and SP1 allows remote malicious users to inject arbitrary web script or HTML via JavaScript sequences in a URL, aka "XSS in...
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
4.3
CVSSv2
CVE-2011-1890
Cross-site scripting (XSS) vulnerability in EditForm.aspx in Microsoft Office SharePoint Server 2010 and SharePoint Foundation 2010 allows remote malicious users to inject arbitrary web script or HTML via a post, aka "Editform Script Injection Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
7.5
CVSSv2
CVE-2013-0080
Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allow remote malicious users to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL, aka "Callback Function Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
4.3
CVSSv2
CVE-2013-0083
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2010 SP1 allows remote malicious users to inject arbitrary web script or HTML via crafted content, leading to administrative command execution, aka "SharePoint XSS Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
7.5
CVSSv2
CVE-2013-0084
Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote malicious users to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL, aka "SharePoint Directory Traversal Vulne...
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
7.8
CVSSv2
CVE-2013-0085
Buffer overflow in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote malicious users to cause a denial of service (W3WP process crash and site outage) via a crafted URL, aka "Buffer Overflow Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
5
CVSSv2
CVE-2013-0086
Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote malicious users to obtain sensitive information via a crafted OneNote file, aka "Buffer Size Validation Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-38002
CVE-2006-4304
CVE-2024-4336
CVE-2024-33437
CVE-2024-4340
CVE-2024-27956
privilege
insecure direct object reference
XSS
item search icon">CVE-2024-25938
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »