CVE-2023-29357: Microsoft SharePoint Server Elevation of Privilege Vulnerability
Microsoft SharePoint Server contains an unspecified vulnerability that allows an unauthenticated attacker, who has gained access to spoofed JWT authentication tokens, to use them for executing a network attack. This attack bypasses authentication, enabling the attacker to gain administrator privileges.
Other sources
Microsoft SharePoint Server Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.10399.20005Patch KB5002403 - Upgrade
Upgrade
Microsoft SharePoint Server 2010to a version that resolves this vulnerability.Fixed in 16.0.10399.20005Patch KB5002403 - Compensating control
Discontinue use of Microsoft SharePoint Server 2010 if vendor mitigations are unavailable.
Event History
Frequently Asked Questions
What is CVE-2023-29357?
CVE-2023-29357 is a vulnerability in Microsoft SharePoint Server that allows an attacker to elevate their privileges.
How severe is CVE-2023-29357?
CVE-2023-29357 has a severity rating of critical, with a severity value of 9.
Which version of Microsoft SharePoint Server is affected by CVE-2023-29357?
Microsoft SharePoint Server 2019 is affected by CVE-2023-29357.
How can I fix CVE-2023-29357?
To fix CVE-2023-29357, apply the relevant patches provided by Microsoft.
Where can I find more information about CVE-2023-29357?
You can find more information about CVE-2023-29357 on the Microsoft Security Response Center website.