CVE-2021-31181
high · 8.8Microsoft SharePoint Remote Code Execution Vulnerability
8.8
CVSS
30.0%
EPSS (exploit prob.)
98th
EPSS percentile
2021-05-11
Published
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-94
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | sharepoint_enterprise_server | 2016 |
| microsoft | sharepoint_foundation | 2013 |
| microsoft | sharepoint_server | 2019 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31181
- https://www.zerodayinitiative.com/advisories/ZDI-21-573/
- http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31181
- https://www.zerodayinitiative.com/advisories/ZDI-21-573/
- https://packetstorm.news/files/id/163208
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2021-31181