Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

David Cioccia

Pesquisador deING
#42035de 53,638
6.4CVSS total
Vulnerabilidades · 1
PT-2019-3187
6.4
2019-09-10
Microsoft · Sharepoint Server · CVE-2019-1262
**Name of the Vulnerable Software and Affected Versions** Microsoft SharePoint Foundation (affected versions not specified) Microsoft SharePoint Server (affected versions not specified) **Description** The issue is related to a lack of input sanitization, which can lead to cross-site scripting (XSS) attacks. An attacker could exploit this by sending a specially crafted web request to an affected server. Successful exploitation could allow the attacker to perform actions such as reading unauthorized content, using the victim's identity to change permissions or delete content, and injecting malicious content into the user's browser. **Recommendations** For Microsoft SharePoint Foundation, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Microsoft SharePoint Server, at the moment, there is no information about a newer version that contains a fix for this vulnerability.