CVE-2021-41344: Microsoft SharePoint Server Remote Code Execution Vulnerability
Published Oct 12, 2021
·Updated
Microsoft SharePoint Server Remote Code Execution Vulnerability
Affected Software
6 affected componentsFixes available
Microsoft SharePoint Server 2019
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Enterprise Server=2016
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server=2019
Microsoft SharePoint Enterprise Server 2016
Remediation
Event History
Oct 12, 2021
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Oct 13, 2021
CVE Published
via MITRE·12:28 AM
Data Sourced
via MITRE·12:28 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityAffected Software
Jun 29, 2026
Advisory Published
via ZDI·04:44 AM
Data Sourced
via ZDI·04:44 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2021-41344?
CVE-2021-41344 is a vulnerability in Microsoft SharePoint that allows remote attackers to execute arbitrary code on affected installations.
2
How severe is CVE-2021-41344?
CVE-2021-41344 has a severity rating of 8.8, indicating a high severity.
3
How can I exploit CVE-2021-41344?
To exploit CVE-2021-41344, remote attackers need authentication and can execute arbitrary code through custom workflows.
4
How do I fix CVE-2021-41344 in Microsoft SharePoint Foundation 2013?
To fix CVE-2021-41344 in Microsoft SharePoint Foundation 2013, apply the security patch available from Microsoft.
5
How do I fix CVE-2021-41344 in Microsoft SharePoint Server 2019?
To fix CVE-2021-41344 in Microsoft SharePoint Server 2019, apply the security patch available from Microsoft.