CVE-2020-1181
high · 8.8A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls, aka 'Microsoft SharePoint Server Remote Code Execution Vulnerability'.
8.8
CVSS
69.3%
EPSS (exploit prob.)
99th
EPSS percentile
2020-06-09
Published
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | sharepoint_enterprise_server | 2016 |
| microsoft | sharepoint_foundation | 2010 |
| microsoft | sharepoint_foundation | 2013 |
| microsoft | sharepoint_server | 2019 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2020-1181