CVE-2020-0891
Published: Mar 12, 2020
Modified: Feb 28, 2025
Description
This vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted request to an affected SharePoint server.An authenticated attacker could exploit this vulnerability by sending a specially crafted request to an affected SharePoint server, aka 'Microsoft SharePoint Reflective XSS Vulnerability'. This CVE ID is unique from CVE-2020-0795.
| Vendor | Product | Versions |
|---|---|---|
Microsoft | Microsoft SharePoint Enterprise Server | affected 2016 |
Microsoft | Microsoft SharePoint Server | affected 2019 |
Microsoft | Microsoft SharePoint Foundation | affected 2010 Service Pack 2affected 2013 Service Pack 1 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now