Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allow remote attackers to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL, aka Callback Function Vulnerability.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sharepoint_foundation | Microsoft | 2010-sp1 (including) | 2010-sp1 (including) |
Sharepoint_server | Microsoft | 2010-sp1 (including) | 2010-sp1 (including) |