CVE-2020-1444: Medium severity microsoft sharepoint enterprise server 2016 vulnerability
Published Jul 14, 2020
·Updated
A remote code execution vulnerability exists in the way Microsoft SharePoint software parses specially crafted email messages, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'.
Affected Software
3 affected components
Microsoft SharePoint Enterprise Server=2016
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server=2019
Remediation
Event History
Jul 14, 2020
CVE Published
via MITRE·10:54 PM
Data Sourced
via MITRE·10:54 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-1444?
CVE-2020-1444 is rated as critical due to its potential to allow remote code execution.
2
How do I fix CVE-2020-1444?
To mitigate CVE-2020-1444, apply the latest security updates provided by Microsoft for affected SharePoint versions.
3
What versions of SharePoint are affected by CVE-2020-1444?
CVE-2020-1444 affects Microsoft SharePoint Enterprise Server 2016, SharePoint Foundation 2013 SP1, and SharePoint Server 2019.
4
What types of attacks can CVE-2020-1444 enable?
CVE-2020-1444 can enable attackers to execute arbitrary code on the server by sending specially crafted email messages.
5
Is CVE-2020-1444 being actively exploited?
Yes, CVE-2020-1444 has been reported to be actively exploited in the wild, making prompt remediation crucial.