CVE-2018-8300
high · 8.8A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka "Microsoft SharePoint Remote Code Execution Vulnerability." This affects Microsoft SharePoint.
8.8
CVSS
13.6%
EPSS (exploit prob.)
96th
EPSS percentile
2018-07-11
Published
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-20
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | sharepoint_enterprise_server | 2013 |
| microsoft | sharepoint_enterprise_server | 2016 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/104614
- http://www.securitytracker.com/id/1041261
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8300
- http://www.securityfocus.com/bid/104614
- http://www.securitytracker.com/id/1041261
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8300
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-8300