[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

XSS Spoofing vulnerability in Microsoft SharePoint - CVE-2015-2522

ID: oval:org.secpod.oval:def:26551Date: (C)2015-09-10   (M)2022-10-10
Class: VULNERABILITYFamily: windows




The host is installed with Microsoft SharePoint Foundation 2013 and is prone to a XSS spoofing vulnerability. A flaw is present in the application, which fails to properly sanitize user-supplied web requests. An attacker who successfully exploited this vulnerability could perform persistent cross-site scripting attacks and run script (in the security context of the logged-on user) with malicious content that appears authentic.

Platform:
Microsoft Windows Server 2008
Microsoft Windows 7
Microsoft Windows Server 2008 R2
Microsoft Windows 8
Microsoft Windows Server 2012
Microsoft Windows 8.1
Microsoft Windows 10
Microsoft Windows Server 2012 R2
Product:
Microsoft SharePoint Foundation 2013
Reference:
CVE-2015-2522
CVE    1
CVE-2015-2522
CPE    2
cpe:/a:microsoft:sharepoint_foundation:2013
cpe:/a:microsoft:sharepoint_foundation:2013:sp1

© SecPod Technologies