CVE-2019-1261
Published: Sep 11, 2019
Modified: Aug 4, 2024
Description
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1259.
| Vendor | Product | Versions |
|---|---|---|
Microsoft | Microsoft SharePoint Foundation | affected 2013 Service Pack 1 |
Microsoft | Microsoft SharePoint Enterprise Server | affected 2016 |
Microsoft | Microsoft SharePoint Server | affected 2019 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now