<< Back
CVE Number Vulnerability Product Severity Date
MS14-050 Vulnerability in Microsoft SharePoint Server Could Allow Elevation of Privilege (2977202) Microsoft SharePoint Important 13-08-2014

Technical Information

Brief overview of the risk:
An elevation of privilege vulnerability exists in SharePoint Server. An authenticated attacker who successfully exploited this vulnerability could use a specially crafted app to run arbitrary code in the security context of the logged-on user.
Detailed Information on the risk:

This security update resolves one privately reported vulnerability in Microsoft SharePoint Server. An authenticated attacker who successfully exploited this vulnerability could use a specially crafted app to run arbitrary JavaScript in the context of the user on the current SharePoint site.

Further information on this exploit is available at : MS14-050

Affected Software

Microsoft SharePoint Server 2013
Microsoft SharePoint Server 2013 Service Pack 1