CVE-2018-8650: XSS
Published Dec 12, 2018
·Updated
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft Office SharePoint XSS Vulnerability." This affects Microsoft SharePoint.
Affected Software
1 affected component
Microsoft SharePoint Enterprise Server=2016
Remediation
Event History
Dec 12, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·03:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-8650?
CVE-2018-8650 has a severity rating of important, indicating a significant risk of exploitation.
2
How do I fix CVE-2018-8650?
To fix CVE-2018-8650, apply the latest security updates provided by Microsoft for SharePoint Server 2016.
3
What versions of SharePoint are affected by CVE-2018-8650?
CVE-2018-8650 specifically affects Microsoft SharePoint Enterprise Server 2016.
4
What type of vulnerability is CVE-2018-8650?
CVE-2018-8650 is classified as a cross-site scripting (XSS) vulnerability.
5
What can attackers do with the CVE-2018-8650 vulnerability?
Attackers exploiting CVE-2018-8650 can execute arbitrary scripts in the context of a user's session with the SharePoint site.