SharePoint Project Server 2013 and SharePoint Enterprise Server 2016 allow an information disclosure vulnerability due to how web requests are handled, aka "Microsoft SharePoint Information Disclosure Vulnerability".
CVSS Details
- CVSS 3.1 Base Score: 5.4
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Microsoft Sharepoint | microsoft-sharepoint-sharepoint_2016-kb4011680 | May 15, 2023 | Feb 15, 2018 | |
| Msft | — | msft-kb4011701-2ba3adca-6802-46ca-b103-2c652355e27emsft-kb4011701-45cea7fd-e9e6-405a-9de9-e2e96fcb1637 | Feb 13, 2018 | Feb 13, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub