PT-2021-3054 · Microsoft · Sharepoint Server+1

Pham Van Khanh

+1

·

Published

2021-05-11

·

Updated

2023-08-02

·

CVE-2021-28478

CVSS v2.0

7.8

High

VectorAV:N/AC:M/Au:N/C:C/I:P/A:N
Name of the Vulnerable Software and Affected Versions Microsoft SharePoint Server (affected versions not specified)
Description The issue is related to errors in the user interface's information representation in Microsoft SharePoint Enterprise Server. It allows a remote attacker to perform a spoofing attack, potentially affecting the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Spoofing

Authentication Bypass by Spoofing

UI Misrepresentation of Critical Information

Weakness Enumeration

Related Identifiers

BDU:2021-02660
CVE-2021-28478

Affected Products

Sharepoint Server
Sharepoint Foundation