MS.SharePoint.HTTP.Information.Disclosure

description-logoDescription

This indicates an attack attempt against an Information Disclosure vulnerability in Microsoft Sharepoint 2007 and Microsoft SharePoint Server 2007.
The vulnerability is a result of the application's failure to properly check user input before using it in an HTTP GET request. As a result, a remote attacker can send a crafted request to get an "ASPX" source file from a vulnerable server.

affected-products-logoAffected Products

SharePoint 2007 and other versions may also be affected.

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Refer to the vendor's website for suggested workaround.
http://technet.microsoft.com/en-us/library/cc288074.aspx

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-05-01 14.605 Sig Added