cbcvebase.
CVE-2013-1290
published 2013-04-09

CVE-2013-1290: Microsoft SharePoint Server 2013, in certain configurations involving legacy My Sites, does not properly establish default access controls for a SharePoint…

low3.5CVSS 3.1
AVNACMAuSCPINAN
Microsoft SharePoint Server 2013, in certain configurations involving legacy My Sites, does not properly establish default access controls for a SharePoint list, which allows remote authenticated users to bypass intended restrictions on reading list items via a direct request for a list's location, aka "Incorrect Access Rights Information Disclosure Vulnerability."

Affected

1 ranges
VendorProductVersion rangeFixed in
microsoftsharepoint_server
CVE-2013-1290 — Sensitive Information Exposure | cvebase