[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Remote code execution vulnerability in Microsoft Sharepoint in the security context of the W3WP service account

ID: oval:org.secpod.oval:def:24275Date: (C)2015-05-13   (M)2021-09-11
Class: VULNERABILITYFamily: windows




The host is installed with Microsoft Sharepoint Server 2007, 2010, Sharepoint Foundation 2010 or 2013 and is prone to a remote code execution vulnerability. A flaw is present in the applications, which fail to handle specially crafted page content. Successful exploitation could allow attackers to execute arbitrary code in the security context of the W3WP service account.

Platform:
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows 7
Microsoft Windows 8
Product:
Microsoft SharePoint Server 2007
Microsoft SharePoint Server 2010
Microsoft SharePoint Foundation 2010
Microsoft SharePoint Foundation 2013
Reference:
CVE-2015-1700
CVE    1
CVE-2015-1700
CPE    8
cpe:/a:microsoft:sharepoint_foundation:2013
cpe:/a:microsoft:sharepoint_foundation:2010
cpe:/a:microsoft:sharepoint_foundation:2010:sp2
cpe:/a:microsoft:sharepoint_server:2007
...

© SecPod Technologies