CVE-2023-21742: Microsoft SharePoint Server Remote Code Execution Vulnerability
Published Jan 10, 2023
·Updated
Microsoft SharePoint Server Remote Code Execution Vulnerability
Affected Software
10 affected componentsFixes available
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Server 2019
Microsoft SharePoint Enterprise Server 2013
Microsoft SharePoint Server Subscription Edition
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server
Microsoft SharePoint Server=2013-sp1
Microsoft SharePoint Server=2016
Microsoft SharePoint Server=2019
Microsoft SharePoint Enterprise Server 2016
Event History
Jan 10, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-21742?
CVE-2023-21742 is a remote code execution vulnerability in Microsoft SharePoint Server.
2
How severe is CVE-2023-21742?
CVE-2023-21742 has a severity rating of 8.8 (high).
3
Which versions of SharePoint Server are affected by CVE-2023-21742?
CVE-2023-21742 affects Microsoft SharePoint Server 2013 SP1, SharePoint Server 2016, and SharePoint Server 2019.
4
How can I fix CVE-2023-21742?
To fix CVE-2023-21742, apply the corresponding security patch provided by Microsoft for your version of SharePoint Server. Links to the patches can be found in the references section.
5
Where can I find more information about CVE-2023-21742?
More information about CVE-2023-21742 can be found on the Microsoft Security Response Center website. Please refer to the reference section for the link.