Microsoft Sharepoint Foundation 2013 Service Pack 1 vulnerabilities
101 known vulnerabilities affecting microsoft/microsoft_sharepoint_foundation_2013_service_pack_1.
Total CVEs
101
CISA KEV
0
Public exploits
6
Exploited in wild
3
Severity breakdown
CRITICAL3HIGH55MEDIUM38LOW5
Vulnerabilities
Page 1 of 6
CVE-2023-21716P1CRITICALCVSS 9.8ExploitedPoC≥ 15.0.0, < 15.0.5529.10002023-02-14
CVE-2023-21716 [CRITICAL] CWE-190 CVE-2023-21716: Microsoft Word Remote Code Execution Vulnerability
Microsoft Word Remote Code Execution Vulnerability
nvd
CVE-2023-21742P1HIGHCVSS 8.8ExploitedPoC≥ 15.0.0, < 15.0.5519.10002023-01-10
CVE-2023-21742 [HIGH] CWE-284 CVE-2023-21742: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2021-27076P1HIGHCVSS 8.8Exploited≥ 15.0.0, < publication2021-03-11
CVE-2021-27076 [HIGH] CVE-2021-27076: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2021-31181P2HIGHCVSS 8.8PoC≥ 15.0.0, < 15.0.5345.10002021-05-11
CVE-2021-31181 [HIGH] CWE-94 CVE-2021-31181: Microsoft SharePoint Remote Code Execution Vulnerability
Microsoft SharePoint Remote Code Execution Vulnerability
nvd
CVE-2020-16952P2HIGHCVSS 7.8PoC≥ 15.0.0, < publication2020-10-16
CVE-2020-16952 [HIGH] CWE-346 CVE-2020-16952: <p>A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to c
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application pool and the SharePoint server farm account.
Exploitation of this vulnerability
nvd
CVE-2022-44690P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5511.10002022-12-13
CVE-2022-44690 [HIGH] CVE-2022-44690: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2022-38053P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5493.10002022-10-11
CVE-2022-38053 [HIGH] CVE-2022-38053: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2022-35823P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5485.10002022-09-13
CVE-2022-35823 [HIGH] CVE-2022-35823: Microsoft SharePoint Remote Code Execution Vulnerability
Microsoft SharePoint Remote Code Execution Vulnerability
nvd
CVE-2023-28288P3HIGHCVSS 8.1PoC≥ 15.0.0, < 15.0.5545.10002023-04-11
CVE-2023-28288 [HIGH] CWE-918 CVE-2023-28288: Microsoft SharePoint Server Spoofing Vulnerability
Microsoft SharePoint Server Spoofing Vulnerability
nvd
CVE-2022-37961P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5485.10002022-09-13
CVE-2022-37961 [HIGH] CVE-2022-37961: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2021-40487P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5389.10002021-10-13
CVE-2021-40487 [HIGH] CWE-94 CVE-2021-40487: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2021-28474P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5345.10002021-05-11
CVE-2021-28474 [HIGH] CWE-436 CVE-2021-28474: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2021-31950P3HIGHCVSS 8.1PoC≥ 15.0.0, < 15.0.5353.10002021-06-08
CVE-2021-31950 [HIGH] CWE-918 CVE-2021-31950: Microsoft SharePoint Server Spoofing Vulnerability
Microsoft SharePoint Server Spoofing Vulnerability
nvd
CVE-2022-29108P2HIGHCVSS 8.8≥ 15.0.0, < 15.0.5449.10002022-05-10
CVE-2022-29108 [HIGH] CVE-2022-29108: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2020-1025P2CRITICALCVSS 9.8≥ 15.0.0, < publication2020-07-14
CVE-2020-1025 [CRITICAL] CWE-20 CVE-2020-1025: An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Busine
An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validation. An attacker who successfully exploited the vulnerability could bypass authentication and achieve improper access.
To exploit this vulnerability, an attacker would need to modify the token.
The update
nvd
CVE-2020-17118P2CRITICALCVSS 9.8≥ 15.0.0, < publication2020-12-10
CVE-2020-17118 [CRITICAL] CVE-2020-17118: Microsoft SharePoint Remote Code Execution Vulnerability
Microsoft SharePoint Remote Code Execution Vulnerability
nvd
CVE-2021-41344P3HIGHCVSS 8.8≥ 15.0.0, < 15.0.5389.10002021-10-13
CVE-2021-41344 [HIGH] CVE-2021-41344: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2021-24066P2HIGHCVSS 8.8≥ 15.0.0, < publication2021-02-25
CVE-2021-24066 [HIGH] CWE-502 CVE-2021-24066: Microsoft SharePoint Remote Code Execution Vulnerability
Microsoft SharePoint Remote Code Execution Vulnerability
nvd
CVE-2021-34467P3HIGHCVSS 8.8≥ 15.0.0, < 15.0.5363.10002021-07-16
CVE-2021-34467 [HIGH] CVE-2021-34467: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2020-1460P3HIGHCVSS 8.8≥ 15.0.0, < publication2020-09-11
CVE-2020-1460 [HIGH] CVE-2020-1460: <p>A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to prop
A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a specially crafted page to perform actions in the security context of the SharePoint application pool process.
To exploit the vuln
nvd
1 / 6Next →