CVE-2022-41037: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-38053, CVE-2022-41036, CVE-2022-41038.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.5493.1000Patch KB5002284 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.5365.1000Patch KB5002287 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.15601.20158Patch KB5002290 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.10391.20000Patch KB5002278
Event History
Frequently Asked Questions
What is CVE-2022-41037?
CVE-2022-41037 is a remote code execution vulnerability in Microsoft SharePoint Server.
How severe is CVE-2022-41037?
CVE-2022-41037 has a severity score of 8.8, which is considered high.
Which versions of Microsoft SharePoint Server are affected by CVE-2022-41037?
CVE-2022-41037 affects Microsoft SharePoint Server 2013 SP1, SharePoint Server 2016, and SharePoint Server 2019.
How can I fix CVE-2022-41037?
To fix CVE-2022-41037, apply the latest security update provided by Microsoft.
Where can I find more information about CVE-2022-41037?
You can find more information about CVE-2022-41037 at the following link: [Microsoft Security Guidance Advisory](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41037)