CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
MS14-050 | Vulnerability in Microsoft SharePoint Server Could Allow Elevation of Privilege (2977202) | Microsoft SharePoint | Important | 13-08-2014 |
Technical Information
Brief overview of the risk:
An elevation of privilege vulnerability exists in SharePoint Server. An authenticated attacker who successfully exploited this vulnerability could use a specially crafted app to run arbitrary code in the security context of the logged-on user.
Detailed Information on the risk:
This security update resolves one privately reported vulnerability in Microsoft SharePoint Server. An authenticated attacker who successfully exploited this vulnerability could use a specially crafted app to run arbitrary JavaScript in the context of the user on the current SharePoint site.
Further information on this exploit is available at : MS14-050
Affected Software
Microsoft SharePoint Server 2013Microsoft SharePoint Server 2013 Service Pack 1