CVE-2020-1147
high · 7.8Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
Added 2021-11-03Remediation due 2022-05-03
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'.
7.8
CVSS
94.0%
EPSS (exploit prob.)
100th
EPSS percentile
2020-07-14
Published
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | .net_core | 2.1 |
| microsoft | .net_core | 3.1 |
| microsoft | .net_framework | 2.0 |
| microsoft | .net_framework | 3.0 |
| microsoft | windows_server_2008 | all versions |
| microsoft | .net_framework | 3.5 |
| microsoft | windows_8.1 | all versions |
| microsoft | windows_server_2012 | all versions |
| microsoft | windows_server_2012 | r2 |
| microsoft | .net_framework | 3.5 |
| microsoft | .net_framework | 4.6.2 |
| microsoft | .net_framework | 4.7 |
| microsoft | .net_framework | 4.7.1 |
| microsoft | .net_framework | 4.7.2 |
| microsoft | windows_10 | 1607 |
| microsoft | windows_server_2016 | all versions |
| microsoft | .net_framework | 3.5 |
| microsoft | .net_framework | 4.6 |
| microsoft | .net_framework | 4.6.1 |
| microsoft | .net_framework | 4.6.2 |
| microsoft | windows_10 | all versions |
| microsoft | .net_framework | 3.5 |
| microsoft | .net_framework | 4.6 |
| microsoft | .net_framework | 4.6.1 |
| microsoft | .net_framework | 4.6.2 |
| microsoft | windows_10 | all versions |
| microsoft | .net_framework | 3.5 |
| microsoft | .net_framework | 4.7.1 |
| microsoft | .net_framework | 4.7.2 |
| microsoft | windows_10 | 1709 |
| microsoft | .net_framework | 3.5 |
| microsoft | .net_framework | 4.7.2 |
| microsoft | windows_10 | 1803 |
| microsoft | windows_10 | 1809 |
| microsoft | windows_server_2016 | 1803 |
| microsoft | windows_server_2019 | all versions |
| microsoft | .net_framework | 3.5 |
| microsoft | .net_framework | 4.8 |
| microsoft | windows_10 | 1809 |
| microsoft | windows_10 | 1903 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/158694/SharePoint-DataSet-DataTable-Deserialization.html
- http://packetstormsecurity.com/files/158876/Microsoft-SharePoint-Server-2019-Remote-Code-Execution.html
- http://packetstormsecurity.com/files/163644/Microsoft-SharePoint-Server-2019-Remote-Code-Execution.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1147
- https://www.exploitalert.com/view-details.html?id=35992
- http://packetstormsecurity.com/files/158694/SharePoint-DataSet-DataTable-Deserialization.html
- http://packetstormsecurity.com/files/158876/Microsoft-SharePoint-Server-2019-Remote-Code-Execution.html
- http://packetstormsecurity.com/files/163644/Microsoft-SharePoint-Server-2019-Remote-Code-Execution.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1147
- https://www.exploitalert.com/view-details.html?id=35992
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-1147
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2020-1147