CVE-2023-21717: Microsoft SharePoint Server Elevation of Privilege Vulnerability
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.15601.20478Patch KB5002353 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.5529.1000Patch KB5002312 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.5383.1000Patch KB5002325 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.10395.20001Patch KB5002330
Event History
Frequently Asked Questions
What is CVE-2023-21717?
CVE-2023-21717 is a vulnerability in Microsoft SharePoint Server that allows for the elevation of privilege.
How severe is CVE-2023-21717?
CVE-2023-21717 has a severity rating of 8.8 out of 10, indicating a high severity.
Which versions of Microsoft SharePoint Server are affected by CVE-2023-21717?
CVE-2023-21717 affects Microsoft SharePoint Enterprise Server 2013 SP1, SharePoint Enterprise Server 2016, SharePoint Foundation 2013 SP1, SharePoint Server Subscription Edition, and SharePoint Server 2019.
How can I fix CVE-2023-21717?
To fix CVE-2023-21717, apply the patches provided by Microsoft for the affected versions of Microsoft SharePoint Server.
Where can I find more information about CVE-2023-21717?
You can find more information about CVE-2023-21717 on the Microsoft Security Response Center website.