CVE-2022-22005: Microsoft SharePoint Server Remote Code Execution Vulnerability
Published Feb 8, 2022
·Updated
Microsoft SharePoint Server Remote Code Execution Vulnerability
Affected Software
8 affected componentsFixes available
Microsoft SharePoint Server 2019
Microsoft SharePoint Enterprise Server 2013
Microsoft SharePoint Server Subscription Edition
Microsoft SharePoint Enterprise Server=2016
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server
Microsoft SharePoint Server=2019
Microsoft SharePoint Enterprise Server 2016
Event History
Feb 8, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Feb 9, 2022
CVE Published
via MITRE·04:36 PM
Data Sourced
via MITRE·04:36 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-22005?
CVE-2022-22005 is a vulnerability in Microsoft SharePoint Server that allows remote code execution.
2
What is the severity of CVE-2022-22005?
CVE-2022-22005 has a severity rating of 8.8 on a scale of 10.
3
Which versions of SharePoint Server are affected by CVE-2022-22005?
SharePoint Server 2019, SharePoint Server Subscription Edition, SharePoint Enterprise Server 2016, and SharePoint Enterprise Server 2013 with SP1 are affected by CVE-2022-22005.
4
How can I fix CVE-2022-22005?
You can fix CVE-2022-22005 by applying the appropriate patches provided by Microsoft. Please refer to the vendor's website for specific patch URLs.
5
Where can I find more information about CVE-2022-22005?
You can find more information about CVE-2022-22005 on the Microsoft Security Response Center website.