Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sharepoint foundation vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-0084
Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote malicious users to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL, aka "SharePoint Directory Traversal Vulne...
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
NA
CVE-2013-0085
Buffer overflow in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote malicious users to cause a denial of service (W3WP process crash and site outage) via a crafted URL, aka "Buffer Overflow Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
NA
CVE-2013-0086
Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote malicious users to obtain sensitive information via a crafted OneNote file, aka "Buffer Size Validation Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
5.7
CVSSv3
CVE-2019-0949
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0950, CVE-2019-0951.
Microsoft Sharepoint Foundation 2013
Microsoft Sharepoint Server 2016
1 Article
8.8
CVSSv3
CVE-2019-0958
An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2...
Microsoft Sharepoint Server 2019
Microsoft Sharepoint Foundation 2013
1 Article
NA
CVE-2011-1890
Cross-site scripting (XSS) vulnerability in EditForm.aspx in Microsoft Office SharePoint Server 2010 and SharePoint Foundation 2010 allows remote malicious users to inject arbitrary web script or HTML via a post, aka "Editform Script Injection Vulnerability."
Microsoft Sharepoint Server 2010
Microsoft Sharepoint Foundation 2010
NA
CVE-2011-1891
Cross-site scripting (XSS) vulnerability in Microsoft Windows SharePoint Services 3.0 SP2, and SharePoint Foundation 2010 Gold and SP1, allows remote malicious users to inject arbitrary web script or HTML via unspecified parameters in a request to a script, aka "Contact Deta...
Microsoft Sharepoint Foundation 2010
Microsoft Sharepoint Services 3.0
5.4
CVSSv3
CVE-2016-0011
Microsoft SharePoint Server 2013 SP1 and SharePoint Foundation 2013 SP1 allow remote authenticated users to bypass intended Access Control Policy restrictions and conduct cross-site scripting (XSS) attacks by modifying a webpart, aka "Microsoft SharePoint Security Feature By...
Microsoft Sharepoint Server 2013
Microsoft Sharepoint Foundation 2013
NA
CVE-2014-2816
Microsoft SharePoint Server 2013 Gold and SP1 and SharePoint Foundation 2013 Gold and SP1 allow remote authenticated users to gain privileges via a Trojan horse app that executes a custom action in the context of the SharePoint extensibility model, aka "SharePoint Page Conte...
Microsoft Sharepoint Foundation 2013
Microsoft Sharepoint Server 2013
5.7
CVSSv3
CVE-2019-0950
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0949, CVE-2019-0951.
Microsoft Sharepoint Server 2016
Microsoft Sharepoint Foundation 2013
1 Article
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »