CVE-2020-17120: Microsoft SharePoint Information Disclosure Vulnerability
Published Dec 8, 2020
·Updated
Microsoft SharePoint Information Disclosure Vulnerability
Affected Software
8 affected componentsFixes available
Microsoft SharePoint Foundation=2010-sp2
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server=2016
Microsoft SharePoint Server=2019
Microsoft SharePoint Foundation 2010
Microsoft SharePoint Server 2019
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Enterprise Server 2016
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-17120?
CVE-2020-17120 has a severity rating of important, indicating significant potential impact.
2
How do I fix CVE-2020-17120?
To fix CVE-2020-17120, apply the latest security updates released by Microsoft for SharePoint.
3
Which versions of SharePoint are affected by CVE-2020-17120?
CVE-2020-17120 affects Microsoft SharePoint Foundation 2010 SP2, SharePoint Foundation 2013 SP1, SharePoint Server 2016, and SharePoint Server 2019.
4
What type of vulnerability is CVE-2020-17120?
CVE-2020-17120 is an information disclosure vulnerability in Microsoft SharePoint.
5
Can CVE-2020-17120 be exploited remotely?
Yes, CVE-2020-17120 can be exploited remotely by attackers to access sensitive information.