CVE-2015-1653: XSS
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2013 SP1 and SharePoint Server 2013 SP1 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "Microsoft SharePoint XSS Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1653?
CVE-2015-1653 has a severity rating of important as it allows for cross-site scripting attacks.
How do I fix CVE-2015-1653?
To fix CVE-2015-1653, apply the latest security updates provided by Microsoft for SharePoint Foundation and SharePoint Server.
What types of attacks are possible with CVE-2015-1653?
CVE-2015-1653 allows attackers to perform cross-site scripting (XSS) attacks which can lead to malicious script injection.
Which Microsoft products are affected by CVE-2015-1653?
CVE-2015-1653 affects Microsoft SharePoint Foundation 2013 SP1 and Microsoft SharePoint Server 2013 SP1.
When was CVE-2015-1653 disclosed?
CVE-2015-1653 was disclosed in 2015 as part of the MS15-036 security bulletin.