CVE-2018-0790

Microsoft SharePoint Foundation 2010, Microsoft SharePoint Server 2013 and Microsoft SharePoint Server 2016 allow an elevation of privilege vulnerability due to the way web requests are handled, aka "Microsoft SharePoint Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0789.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:sharepoint_enterprise_server:2013:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_foundation:2010:sp2:*:*:*:*:*:*

History

21 Nov 2024, 03:38

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102391 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/102391 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1040150 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1040150 - Third Party Advisory, VDB Entry
References () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0790 - Patch, Vendor Advisory () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0790 - Patch, Vendor Advisory

Information

Published : 2018-01-10 01:29

Updated : 2024-11-21 03:38


NVD link : CVE-2018-0790

Mitre link : CVE-2018-0790

CVE.ORG link : CVE-2018-0790


JSON object : View

Products Affected

microsoft

  • sharepoint_foundation
  • sharepoint_enterprise_server