CVE-2021-38651: Microsoft SharePoint Server Spoofing Vulnerability
Microsoft SharePoint Server Spoofing Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5381.1000Patch KB5002024 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10378.20002Patch KB5002018 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5215.1000Patch KB5002020
Event History
Frequently Asked Questions
What is CVE-2021-38651?
CVE-2021-38651 is a spoofing vulnerability in Microsoft SharePoint Server.
How severe is CVE-2021-38651?
CVE-2021-38651 has a severity rating of 3.5 (low).
Which software versions are affected by CVE-2021-38651?
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Foundation 2013 SP1, and Microsoft SharePoint Server 2019 are affected by CVE-2021-38651.
What is the impact of CVE-2021-38651?
CVE-2021-38651 allows an attacker to bypass security measures and potentially conduct spoofing attacks.
How can I fix CVE-2021-38651?
Apply the necessary security updates provided by Microsoft to address CVE-2021-38651.