CVE-2011-1891: XSS
Cross-site scripting (XSS) vulnerability in Microsoft Windows SharePoint Services 3.0 SP2, and SharePoint Foundation 2010 Gold and SP1, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters in a request to a script, aka "Contact Details Reflected XSS Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1891?
CVE-2011-1891 is considered a moderate severity vulnerability due to the potential for cross-site scripting attacks.
How do I fix CVE-2011-1891?
To fix CVE-2011-1891, install the security updates provided by Microsoft for SharePoint Services and SharePoint Foundation.
What impact does CVE-2011-1891 have on affected systems?
CVE-2011-1891 allows remote attackers to inject arbitrary web scripts or HTML, potentially compromising user data and application integrity.
Which versions of software are affected by CVE-2011-1891?
CVE-2011-1891 affects Microsoft SharePoint Services 3.0 SP2 and Microsoft SharePoint Foundation 2010, including SP1.
What is the nature of the attack vector for CVE-2011-1891?
The attack vector for CVE-2011-1891 involves sending crafted requests that contain malicious scripts to vulnerable SharePoint systems.