CVE-2005-0049: XSS
Windows SharePoint Services and SharePoint Team Services for Windows Server 2003 does not properly validate an HTTP redirection query, which allows remote attackers to inject arbitrary HTML and web script via a cross-site scripting (XSS) attack, or to spoof the web cache.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0049?
CVE-2005-0049 has been assigned a medium severity rating because it allows for cross-site scripting (XSS) attacks.
How do I fix CVE-2005-0049?
To fix CVE-2005-0049, ensure you apply the latest updates and patches for Microsoft SharePoint Team Services and SharePoint Portal Server.
Who is affected by CVE-2005-0049?
CVE-2005-0049 affects users of Microsoft SharePoint Team Services and Microsoft SharePoint Portal Server 2003.
What types of attacks can CVE-2005-0049 enable?
CVE-2005-0049 can enable cross-site scripting (XSS) attacks and allow attackers to spoof the web cache.
What versions are vulnerable in CVE-2005-0049?
The affected versions in CVE-2005-0049 include Microsoft SharePoint Team Services and Microsoft SharePoint Portal Server 2003 and 2003 SP1.