PT-2020-4379 · Microsoft · Sharepoint Server

Raad Firas Haddad

·

Published

2020-10-13

·

Updated

2023-12-31

·

CVE-2020-16950

CVSS v3.1

5.0

Medium

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Microsoft SharePoint Server (affected versions not specified)
Description: An information disclosure issue exists due to Microsoft SharePoint Server's improper handling of objects in memory. This could allow an attacker to obtain information that could be used to further compromise the user's system. To exploit this issue, an attacker would need to log on to an affected system and run a specially crafted application.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2020-04892
BDU:2020-05449
CVE-2020-16950

Affected Products

Sharepoint Server