← All CVEs

CVE-2020-1181

high · 8.8

A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls, aka 'Microsoft SharePoint Server Remote Code Execution Vulnerability'.

8.8
CVSS
69.3%
EPSS (exploit prob.)
99th
EPSS percentile
2020-06-09
Published

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

VendorProductAffected versions
microsoftsharepoint_enterprise_server2016
microsoftsharepoint_foundation2010
microsoftsharepoint_foundation2013
microsoftsharepoint_server2019

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2020-1181