CVE-2019-1259: CSRF
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1261.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1259?
CVE-2019-1259 has a severity rating of Important as it can lead to cross-site request forgery.
How do I fix CVE-2019-1259?
To fix CVE-2019-1259, install the latest security updates for Microsoft SharePoint Foundation 2013 SP1.
Who is affected by CVE-2019-1259?
CVE-2019-1259 affects Microsoft SharePoint Foundation 2013 SP1 users.
What does CVE-2019-1259 exploit?
CVE-2019-1259 exploits a vulnerability in how SharePoint handles requests to authorize applications.
What are the potential consequences of CVE-2019-1259?
Exploitation of CVE-2019-1259 may allow an attacker to perform unauthorized actions on behalf of a user without their consent.