Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allow remote attackers to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL, aka Callback Function Vulnerability.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Sharepoint_foundation | Microsoft | 2010-sp1 (including) | 2010-sp1 (including) |
| Sharepoint_server | Microsoft | 2010-sp1 (including) | 2010-sp1 (including) |