漏洞标题
N/A
漏洞描述信息
Microsoft Office SharePoint Server 2010、Windows SharePoint Services 2.0和3.0 SP2以及 SharePoint Foundation 2010 中的跨站脚本(XSS)漏洞允许远程攻击者通过URI注入任意的网页脚本或HTML,aka "SharePoint XSS 漏洞"。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
漏洞类别
N/A
漏洞标题
N/A
漏洞描述信息
Cross-site scripting (XSS) vulnerability in Microsoft Office SharePoint Server 2010, Windows SharePoint Services 2.0 and 3.0 SP2, and SharePoint Foundation 2010 allows remote attackers to inject arbitrary web script or HTML via the URI, aka "SharePoint XSS Vulnerability."
CVSS信息
N/A
漏洞类别
N/A
漏洞标题
Microsoft SharePoint跨站脚本攻击漏洞
漏洞描述信息
SharePoint Server是一个服务器功能集成套件,提供全面的内容管理和企业搜索,加速共享业务流程并简化跨界限信息共享。 Microsoft Office SharePoint Server 2010,Windows SharePoint Services 2.0和3.0 SP2,SharePoint Foundation 2010版本中存在跨站脚本攻击漏洞。Windows SharePoint Service中的JavaScript以特制的URL编码,然后在页面中返回给用户,允许远程攻击者在目标
CVSS信息
N/A
漏洞类别
跨站脚本