CVE-2019-0963: XSS
Published May 16, 2019
·Updated
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'.
Affected Software
1 affected component
Microsoft SharePoint Foundation=2013-sp1
Remediation
Event History
May 16, 2019
CVE Published
via MITRE·06:24 PM
Data Sourced
via MITRE·06:24 PM
DescriptionWeakness
Data Sourced
via NVD·07:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-0963?
CVE-2019-0963 has a medium severity rating, indicating it poses a moderate risk to affected systems.
2
How do I fix CVE-2019-0963?
To fix CVE-2019-0963, apply the latest security updates provided by Microsoft for SharePoint Foundation 2013 SP1.
3
Which software versions are affected by CVE-2019-0963?
CVE-2019-0963 affects Microsoft SharePoint Foundation 2013 SP1.
4
What type of vulnerability is CVE-2019-0963?
CVE-2019-0963 is classified as a cross-site scripting (XSS) vulnerability.
5
What can happen if CVE-2019-0963 is exploited?
If exploited, CVE-2019-0963 can allow an attacker to execute scripts in the context of the affected user, potentially compromising sensitive information.