A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2019-0830.
2019-04-09T21:29:01.693
2025-02-28T21:15:13.657
Modified
CVSSv3.1: 5.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | sharepoint_enterprise_server | 2013 | Yes |
Application | microsoft | sharepoint_enterprise_server | 2016 | Yes |
Application | microsoft | sharepoint_foundation | 2010 | Yes |
Application | microsoft | sharepoint_server | 2010 | Yes |
Application | microsoft | sharepoint_server | 2019 | Yes |