CVE-2017-11936

Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability due to the way web requests are handled, aka "Microsoft SharePoint Elevation of Privilege Vulnerability".
References
Link Resource
http://www.securityfocus.com/bid/102068 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039995 Third Party Advisory VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11936 Issue Tracking Patch Vendor Advisory
http://www.securityfocus.com/bid/102068 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039995 Third Party Advisory VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11936 Issue Tracking Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*

History

21 Nov 2024, 03:08

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102068 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/102068 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1039995 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1039995 - Third Party Advisory, VDB Entry
References () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11936 - Issue Tracking, Patch, Vendor Advisory () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11936 - Issue Tracking, Patch, Vendor Advisory

Information

Published : 2017-12-12 21:29

Updated : 2024-11-21 03:08


NVD link : CVE-2017-11936

Mitre link : CVE-2017-11936

CVE.ORG link : CVE-2017-11936


JSON object : View

Products Affected

microsoft

  • sharepoint_enterprise_server
CWE
CWE-20

Improper Input Validation