CVE-2019-1328: XSS
Published Oct 10, 2019
·Updated
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'.
Affected Software
3 affected components
Microsoft SharePoint Enterprise Server=2016
Microsoft SharePoint Foundation=2010-sp2
Microsoft SharePoint Foundation=2013-sp1
Remediation
Event History
Oct 10, 2019
CVE Published
via MITRE·01:28 PM
Data Sourced
via MITRE·01:28 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-1328?
The severity of CVE-2019-1328 is classified as important.
2
How do I fix CVE-2019-1328?
To fix CVE-2019-1328, apply the security update provided by Microsoft.
3
What systems are affected by CVE-2019-1328?
CVE-2019-1328 affects Microsoft SharePoint Enterprise Server 2016, SharePoint Foundation 2010 SP2, and SharePoint Foundation 2013 SP1.
4
What type of vulnerability is CVE-2019-1328?
CVE-2019-1328 is a spoofing vulnerability due to improper sanitization of web requests.
5
Can CVE-2019-1328 lead to data breaches?
Yes, CVE-2019-1328 can potentially lead to unauthorized access and data breaches if exploited.