CVE-2022-41062: Microsoft SharePoint Server Remote Code Execution Vulnerability
Microsoft SharePoint Server Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.5501.1000Patch KB5002303 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.15601.20238Patch KB5002296 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.5369.1000Patch KB5002305 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.10392.20000Patch KB5002294
Event History
Frequently Asked Questions
What is CVE-2022-41062?
CVE-2022-41062 is a Microsoft SharePoint Server Remote Code Execution Vulnerability.
Which software versions are affected by CVE-2022-41062?
CVE-2022-41062 affects Microsoft SharePoint Server 2013 SP1, SharePoint Server 2016, SharePoint Foundation 2013 SP1, SharePoint Server Subscription Edition, and SharePoint Server 2019.
What is the severity of CVE-2022-41062?
CVE-2022-41062 has a severity rating of 8.8 (High).
How can I patch CVE-2022-41062?
To patch CVE-2022-41062, you can download the respective patches from the following URLs: SharePoint Enterprise Server 2013 (https://www.microsoft.com/download/details.aspx?familyid=d722a475-bf22-498d-862d-0378b2cfeb4a), SharePoint Foundation 2013 (https://www.microsoft.com/download/details.aspx?familyid=4b609168-569a-46ec-a81d-baa844eeb8eb), SharePoint Enterprise Server 2016 (https://www.microsoft.com/download/details.aspx?familyid=c9c33854-521e-45c7-b7fc-9bf7348535c5), SharePoint Server 2019 (https://www.microsoft.com/download/details.aspx?familyid=e27e7041-ecdd-42b4-a712-cb73da73aceb), SharePoint Server Subscription Edition (https://www.microsoft.com/download/details.aspx?familyid=e27e7041-ecdd-42b4-a712-cb73da73aceb).
Where can I find more information about CVE-2022-41062?
You can find more information about CVE-2022-41062 on the Microsoft Security Response Center website at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41062.