CVE-2019-1259
published 2019-09-11CVE-2019-1259: A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery…
PriorityP339high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
1.47%
70.7th percentile
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1261.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | microsoft_sharepoint_enterprise_server | — | — |
| microsoft | microsoft_sharepoint_foundation | — | — |
| microsoft | microsoft_sharepoint_server | — | — |
| microsoft | sharepoint_enterprise_server | — | — |
| microsoft | sharepoint_foundation | — | — |
| microsoft | sharepoint_server | — | — |
| msrc | microsoft_sharepoint_foundation_2013_service_pack_1 | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_msrc8.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hcqx-rg27-pcqw: A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request
ghsa_unreviewed·2022-05-24·CVSS 8.8
CVE-2019-1259 [HIGH] GHSA-hcqx-rg27-pcqw: A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1261.
GHSA
GHSA-cpgg-76rc-452r: A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request
ghsa_unreviewed·2022-05-24·CVSS 8.8
CVE-2019-1261 [HIGH] GHSA-cpgg-76rc-452r: A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1259.
Microsoft
Microsoft SharePoint Spoofing Vulnerability
vendor_msrc·2019-09-10·CVSS 8.8
CVE-2019-1259 [HIGH] Microsoft SharePoint Spoofing Vulnerability
Microsoft SharePoint Spoofing Vulnerability
Description: A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).
To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request. The attacker would then need to convince a targeted user to click a link to the malicious page.
The security update addresses the vulnerability by helping to ensure that SharePoint Server properly sanitizes user web requests.
FAQ: Is the Preview Pane an attack vector for this vulnerability?
No, the Preview Pane is not an attack vector.
Microsoft Office SharePoint: Microsoft Office SharePoint
Microsoft: Microsoft
Customer Action Required: Yes
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Use-after-free vulnerability in Microsoft Excel could lead to code execution
blogs_talos·2021-10-12·CVSS 7.8
[HIGH] Vulnerability Spotlight: Use-after-free vulnerability in Microsoft Excel could lead to code execution
## Vulnerability Spotlight: Use-after-free vulnerability in Microsoft Excel could lead to code execution
Marcin “Icewall” Noga of Cisco Talos discovered this vulnerability.
Cisco Talos recently discovered a use-after-free vulnerability in the ConditionalFormatting functionality of Microsoft Office Excel 2019 that could allow an attacker to execute arbitrary code on the victim machine.
Microsoft disclosed and patched this vulnerability in the popular spreadsheet creation and editing platform as part of its monthly security update. You can read more about Patch Tuesday here . TALOS-2021-1259 (CVE-2021-40474) could be exploited by an attacker if they tricked the target into opening a specially crafted Excel file. Proper heap grooming on the attacker’s part could give them full control of t
Talos
Vulnerability Spotlight: Use-after-free vulnerability in Microsoft Excel could lead to code execution
blogs_talos·2021-10-12·CVSS 7.8
[HIGH] Vulnerability Spotlight: Use-after-free vulnerability in Microsoft Excel could lead to code execution
Marcin “Icewall” Noga of Cisco Talos discovered this vulnerability.
Cisco Talos recently discovered a use-after-free vulnerability in the ConditionalFormatting functionality of Microsoft Office Excel 2019 that could allow an attacker to execute arbitrary code on the victim machine.
Microsoft disclosed and patched this vulnerability in the popular spreadsheet creation and editing platform as part of its monthly security update. You can read more about Patch Tuesday here. TALOS-2021-1259 (CVE-2021-40474) could be exploited by an attacker if they tricked the target into opening a specially crafted Excel file. Proper heap grooming on the attacker’s part could give them full control of this use-after-free vulnerability and, as a result, could allow it to be turned into arbitrary code executio
Tenable
Microsoft's September 2019 Patch Tuesday: Tenable Roundup
blogs_tenable·2019-09-10
Microsoft's September 2019 Patch Tuesday: Tenable Roundup
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Bugzilla
CVE-2019-0820 dotnet: timeouts for regular expressions are not enforced
bugzilla·2019-05-02·CVSS 7.5
CVE-2019-0820 [HIGH] CVE-2019-0820 dotnet: timeouts for regular expressions are not enforced
CVE-2019-0820 dotnet: timeouts for regular expressions are not enforced
It was discovered that RegEx strings were not properly processed, which can be exploited by anauthenticated remote attackers to cause a Denial of Service by sending specially crafted requests to a .NET Core application.
External references:
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0820
Discussion:
This issue has been addressed in the following products:
.NET Core on Red Hat Enterprise Linux
Via RHSA-2019:1236 https://access.redhat.com/errata/RHSA-2019:1236
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1259 https://access.redhat.com/errata/RHSA-2019:1259
Bugzilla
CVE-2019-0980 dotnet: infinite loop in Uri.TryCreate leading to ASP.Net Core Denial of Service
bugzilla·2019-05-02·CVSS 7.5
CVE-2019-0980 [HIGH] CVE-2019-0980 dotnet: infinite loop in Uri.TryCreate leading to ASP.Net Core Denial of Service
CVE-2019-0980 dotnet: infinite loop in Uri.TryCreate leading to ASP.Net Core Denial of Service
An infinite loop flaw related to URI.TryCreate when processing certain web requests can be exploited by unauthenticated remote attackers to cause a Denial of Service by sending specially crafted requests to a .NET Core application.
External references:
https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2019-0980
Discussion:
This issue has been addressed in the following products:
.NET Core on Red Hat Enterprise Linux
Via RHSA-2019:1236 https://access.redhat.com/errata/RHSA-2019:1236
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1259 https://access.redhat.com/errata/RHSA-2019:1259
Bugzilla
CVE-2019-0981 dotnet: crash in IPAddress.TryCreate leading to ASP.Net Core Denial of Service
bugzilla·2019-05-02·CVSS 7.5
CVE-2019-0981 [HIGH] CVE-2019-0981 dotnet: crash in IPAddress.TryCreate leading to ASP.Net Core Denial of Service
CVE-2019-0981 dotnet: crash in IPAddress.TryCreate leading to ASP.Net Core Denial of Service
An error related to IPAddress.TryCreate when processing certain web requests can be exploited by unauthenticated remote attackers to cause a Denial of Service by sending specially crafted requests to a .NET Core application.
External references:
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0981
Discussion:
This issue has been addressed in the following products:
.NET Core on Red Hat Enterprise Linux
Via RHSA-2019:1236 https://access.redhat.com/errata/RHSA-2019:1236
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1259 https://access.redhat.com/errata/RHSA-2019:1259
Bugzilla
CVE-2019-0757 dotnet: NuGet Tampering Vulnerability
bugzilla·2019-03-05·CVSS 6.5
CVE-2019-0757 [MEDIUM] CVE-2019-0757 dotnet: NuGet Tampering Vulnerability
CVE-2019-0757 dotnet: NuGet Tampering Vulnerability
A tampering vulnerability exists in NuGet software when executed in a Linux or Mac environment. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user.
Discussion:
This issue has been addressed in the following products:
.NET Core on Red Hat Enterprise Linux
Via RHSA-2019:0544 https://access.redhat.com/errata/RHSA-2019:0544
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1259 https://access.redhat.com/errata/RHSA-2019:1259
---
External References:
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0757
2019-09-11
Published