CVE Vulnerabilities

CVE-2018-0790

Published: Jan 10, 2018 | Modified: Oct 03, 2019
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Microsoft SharePoint Foundation 2010, Microsoft SharePoint Server 2013 and Microsoft SharePoint Server 2016 allow an elevation of privilege vulnerability due to the way web requests are handled, aka Microsoft SharePoint Elevation of Privilege Vulnerability. This CVE is unique from CVE-2018-0789.

Affected Software

Name Vendor Start Version End Version
Sharepoint_enterprise_server Microsoft 2013-sp1 (including) 2013-sp1 (including)
Sharepoint_enterprise_server Microsoft 2016 (including) 2016 (including)
Sharepoint_foundation Microsoft 2010-sp2 (including) 2010-sp2 (including)

References