Endpoint Vulnerability

Microsoft SharePoint Cross Site Scripting Vulnerability

Description

A cross-site scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a specially crafted request to an affected SharePoint server.

Affected Products

Microsoft SharePoint Foundation 2013 Service Pack 1

References

CVE-2017-8745,