CVE-2020-17118: Microsoft SharePoint Remote Code Execution Vulnerability
Published Dec 8, 2020
·Updated
Microsoft SharePoint Remote Code Execution Vulnerability This CVE ID is unique from CVE-2020-17121.
Affected Software
8 affected componentsFixes available
Microsoft SharePoint Foundation=2010-sp2
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server=2016
Microsoft SharePoint Server=2019
Microsoft SharePoint Foundation 2010
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Enterprise Server 2016
Microsoft SharePoint Server 2019
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Aug 12, 58408
Event
01:42 PM
Frequently Asked Questions
1
What is the severity of CVE-2020-17118?
CVE-2020-17118 has a critical severity rating due to its potential for remote code execution.
2
How do I fix CVE-2020-17118?
To fix CVE-2020-17118, you should apply the latest security updates provided by Microsoft for the affected SharePoint versions.
3
What versions of SharePoint are affected by CVE-2020-17118?
CVE-2020-17118 affects Microsoft SharePoint Foundation 2010 SP2, 2013 SP1, SharePoint Server 2016, and SharePoint Server 2019.
4
What impact does CVE-2020-17118 have on systems?
CVE-2020-17118 allows attackers to execute arbitrary code on affected SharePoint installations, potentially compromising system integrity.
5
Is CVE-2020-17118 exploitability in the wild?
CVE-2020-17118 has been reported as actively exploited in the wild, increasing the urgency for patching.