A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-1177, CVE-2020-1183, CVE-2020-1297, CVE-2020-1318, CVE-2020-1320.
2020-06-09T20:15:19.663
2025-02-28T20:15:37.063
Modified
CVSSv3.1: 5.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | sharepoint_enterprise_server | 2016 | Yes |
Application | microsoft | sharepoint_foundation | 2010 | Yes |
Application | microsoft | sharepoint_foundation | 2013 | Yes |
Application | microsoft | sharepoint_server | 2019 | Yes |