(MS15-036) Vulnerabilities in Microsoft SharePoint Server Could Allow Elevation of Privilege (3052044)
Publish Date: 22 avril 2015
Gravité: : Élevé
Date du conseil: 22 avril 2015
Description
This security update addresses vulnerabilities found existing in Microsoft Office server and productivity software, which could allow elevation of privilege. An attacker can successfully exploit these vulnerabilities via sending a specially crafted request to an affected SharePoint server. As such, an attacker can read content or take actions on the SharePoint site without the user’s knowledge.
Solutions
Affected software and version:
- Microsoft SharePoint Server 2013 Service Pack 1
- Microsoft SharePoint Server 2010 Service Pack 2