CVE-2023-21717: Microsoft SharePoint Server Elevation of Privilege Vulnerability
Published Feb 14, 2023
·Updated
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Affected Software
10 affected componentsFixes available
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Enterprise Server 2013
Microsoft SharePoint Server 2019
Microsoft SharePoint Server Subscription Edition
Microsoft SharePoint Enterprise Server=2013-sp1
Microsoft SharePoint Enterprise Server=2016
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server
Microsoft SharePoint Server=2019
Microsoft SharePoint Enterprise Server 2016
Remediation
Event History
Feb 14, 2023
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
CVE Published
via MITRE·07:33 PM
Data Sourced
via MITRE·07:33 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-21717?
CVE-2023-21717 is a vulnerability in Microsoft SharePoint Server that allows for the elevation of privilege.
2
How severe is CVE-2023-21717?
CVE-2023-21717 has a severity rating of 8.8 out of 10, indicating a high severity.
3
Which versions of Microsoft SharePoint Server are affected by CVE-2023-21717?
CVE-2023-21717 affects Microsoft SharePoint Enterprise Server 2013 SP1, SharePoint Enterprise Server 2016, SharePoint Foundation 2013 SP1, SharePoint Server Subscription Edition, and SharePoint Server 2019.
4
How can I fix CVE-2023-21717?
To fix CVE-2023-21717, apply the patches provided by Microsoft for the affected versions of Microsoft SharePoint Server.
5
Where can I find more information about CVE-2023-21717?
You can find more information about CVE-2023-21717 on the Microsoft Security Response Center website.