CVE-2018-8168: XSS
An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint Server, Microsoft SharePoint. This CVE ID is unique from CVE-2018-8149, CVE-2018-8155, CVE-2018-8156.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-8168?
CVE-2018-8168 is classified as an elevation of privilege vulnerability with a significant impact on system security.
How do I fix CVE-2018-8168?
To fix CVE-2018-8168, apply the latest security updates provided by Microsoft for affected SharePoint Server versions.
Which versions of Microsoft SharePoint Server are affected by CVE-2018-8168?
CVE-2018-8168 affects Microsoft SharePoint Server 2010 SP2 and SharePoint Server 2013 SP1.
What could be the consequences of exploiting CVE-2018-8168?
Exploitation of CVE-2018-8168 could allow attackers to gain elevated privileges and execute arbitrary code on the affected SharePoint server.
Is CVE-2018-8168 related to any other vulnerabilities?
CVE-2018-8168 is a standalone vulnerability, but similar elevation of privilege vulnerabilities may exist in other versions or configurations.