CVE-2020-17016Improper Input Validation in Microsoft Sharepoint Enterprise Server 2013 Service Pack 1

Severity
8.8HIGHNVD
CNA8.0
EPSS
16.9%
top 5.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 11
Latest updateMay 24

Description

Microsoft SharePoint Server Spoofing Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages7 packages

Patches

🔴Vulnerability Details

3
GHSA
GHSA-2wcf-8w35-jp7x: Microsoft SharePoint Spoofing Vulnerability This CVE ID is unique from CVE-2020-17015, CVE-2020-170602022-05-24
CVEList
Microsoft SharePoint Server Spoofing Vulnerability2020-11-11
OSV
thunderbird vulnerabilities2020-04-21

📋Vendor Advisories

4
Microsoft
Microsoft SharePoint Server Spoofing Vulnerability2020-11-10
Mozilla
Mozilla Foundation Security Advisory 2020-02: CVE-2019-17016
Mozilla
Mozilla Foundation Security Advisory 2020-04: CVE-2019-17016
Mozilla
Mozilla Foundation Security Advisory 2020-01: CVE-2019-17016

💬Community

1
Bugzilla
CVE-2019-17016 Mozilla: Bypass of @namespace CSS sanitization during pasting2020-01-07
CVE-2020-17016 — Improper Input Validation in Microsoft | cvebase