A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-1450, CVE-2020-1451.
CVSS Details
- CVSS 3.1 Base Score: 5.4
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade openjdk8Upgrade openjdk7Upgrade openjdk11 | Oct 22, 2020 | Jul 14, 2020 |
| Microsoft Sharepoint | — | Download and install Microsoft KB4484436Download and install Microsoft KB4484453 | May 15, 2023 | Jul 14, 2020 |
| Msft | — | Security Update for Microsoft SharePoint Enterprise Server 2013 (KB4484443)Security Update for 2010 Microsoft Business Productivity Servers (KB4484460) | Jul 14, 2020 | Jul 14, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub