CVE-2021-31181

Microsoft SharePoint Remote Code Execution Vulnerability
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_foundation:2013:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*

History

28 Feb 2025, 21:15

Type Values Removed Values Added
CWE CWE-94
References
  • () https://packetstorm.news/files/id/163208 -

21 Nov 2024, 06:05

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html - Exploit, Third Party Advisory, VDB Entry () http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html - Exploit, Third Party Advisory, VDB Entry
References () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31181 - Patch, Vendor Advisory () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31181 - Patch, Vendor Advisory
References () https://www.zerodayinitiative.com/advisories/ZDI-21-573/ - Third Party Advisory, VDB Entry () https://www.zerodayinitiative.com/advisories/ZDI-21-573/ - Third Party Advisory, VDB Entry

29 Apr 2022, 16:24

Type Values Removed Values Added
References (MISC) http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html - (MISC) http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html - Exploit, Third Party Advisory, VDB Entry
References (MISC) https://www.zerodayinitiative.com/advisories/ZDI-21-573/ - Third Party Advisory (MISC) https://www.zerodayinitiative.com/advisories/ZDI-21-573/ - Third Party Advisory, VDB Entry

17 Jun 2021, 20:15

Type Values Removed Values Added
References
  • (MISC) http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html -

Information

Published : 2021-05-11 19:15

Updated : 2025-02-28 21:15


NVD link : CVE-2021-31181

Mitre link : CVE-2021-31181

CVE.ORG link : CVE-2021-31181


JSON object : View

Products Affected

microsoft

  • sharepoint_enterprise_server
  • sharepoint_foundation
  • sharepoint_server
CWE
NVD-CWE-noinfo CWE-94

Improper Control of Generation of Code ('Code Injection')