CVE-2021-40487: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-40487?
CVE-2021-40487 is a vulnerability that allows remote attackers to execute arbitrary code on affected installations of Microsoft SharePoint.
How severe is CVE-2021-40487?
CVE-2021-40487 has a severity rating of 8.8, which is considered high.
How does CVE-2021-40487 work?
CVE-2021-40487 exploits a flaw in the Microsoft.SharePoint.WorkflowActions.SetVariableActivity class, allowing remote attackers to execute arbitrary code.
How do I fix CVE-2021-40487 on Microsoft SharePoint Server 2019?
To fix CVE-2021-40487 on Microsoft SharePoint Server 2019, you can apply the patch provided by Microsoft, which can be downloaded from the official Microsoft website.
Where can I find more information about CVE-2021-40487?
You can find more information about CVE-2021-40487 on the Microsoft Security Response Center website, the Microsoft Security Guidance Advisory, and the Zero Day Initiative website.