CVE-2018-0864: XSS
SharePoint Project Server 2013 and SharePoint Enterprise Server 2016 allow an information disclosure vulnerability due to how web requests are handled, aka "Microsoft SharePoint Information Disclosure Vulnerability".
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-0864?
CVE-2018-0864 has been classified as a moderate severity vulnerability.
How do I fix CVE-2018-0864?
To mitigate CVE-2018-0864, it is recommended to apply the latest security updates provided by Microsoft for SharePoint Server 2013 and 2016.
What systems are affected by CVE-2018-0864?
CVE-2018-0864 affects Microsoft SharePoint Server 2013 SP1 and Microsoft SharePoint Server 2016.
What does CVE-2018-0864 exploit?
CVE-2018-0864 exploits an information disclosure vulnerability due to improper handling of web requests.
Is there a workaround for CVE-2018-0864?
Currently, there are no specific workarounds listed for mitigating CVE-2018-0864 other than applying the necessary updates.