Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49vg-6g45-5h6j

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Microsoft Office SharePoint Server 2007 Gold and SP1 and Microsoft Search Server 2008 do not properly perform authentication and authorization for administrative functions, which allows remote attackers to cause a denial of service (server load), obtain sensitive information, and "create scripts that would run in the context of the site" via requests to administrative URIs, aka "Access Control Vulnerability."

Microsoft Office SharePoint Server 2007 Gold and SP1 and Microsoft Search Server 2008 do not properly perform authentication and authorization for administrative functions, which allows remote attackers to cause a denial of service (server load), obtain sensitive information, and "create scripts that would run in the context of the site" via requests to administrative URIs, aka "Access Control Vulnerability."

EPSS

Процентиль: 98%
0.59434
Средний

Дефекты

CWE-287

Связанные уязвимости

nvd
около 17 лет назад

Microsoft Office SharePoint Server 2007 Gold and SP1 and Microsoft Search Server 2008 do not properly perform authentication and authorization for administrative functions, which allows remote attackers to cause a denial of service (server load), obtain sensitive information, and "create scripts that would run in the context of the site" via requests to administrative URIs, aka "Access Control Vulnerability."

EPSS

Процентиль: 98%
0.59434
Средний

Дефекты

CWE-287