CVE-2023-23395: Microsoft SharePoint Server Spoofing Vulnerability
Published Mar 14, 2023
·Updated
Microsoft SharePoint Server Spoofing Vulnerability
Affected Software
9 affected componentsFixes available
Microsoft SharePoint Server Subscription Edition
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Server 2019
Microsoft SharePoint Enterprise Server 2013
Microsoft SharePoint Foundation=2013-sp1
Microsoft SharePoint Server
Microsoft SharePoint Server=2013-sp1
Microsoft SharePoint Server=2019
Microsoft SharePoint Enterprise Server 2016
Remediation
Event History
Mar 14, 2023
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·04:55 PM
Data Sourced
via MITRE·04:55 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-23395?
CVE-2023-23395 is a spoofing vulnerability in Microsoft SharePoint Server.
2
How severe is CVE-2023-23395?
CVE-2023-23395 has a severity level of high.
3
Which software is affected by CVE-2023-23395?
Microsoft SharePoint Foundation 2013, Microsoft SharePoint Server, Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server Subscription Edition, and Microsoft SharePoint Enterprise Server 2013 are affected by CVE-2023-23395.
4
How can I fix CVE-2023-23395?
To fix CVE-2023-23395, you should apply the patches provided by Microsoft for the affected software versions.
5
Where can I find more information about CVE-2023-23395?
You can find more information about CVE-2023-23395 on the Microsoft Security Response Center website at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-23395.