Back to search
CVE-2020-1456
Published: Jul 14, 2020
Modified: Feb 28, 2025
PUBLISHED
Description
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-1450, CVE-2020-1451.
| Vendor | Product | Versions |
|---|---|---|
Microsoft | Microsoft SharePoint Enterprise Server | affected 2016affected 2013 Service Pack 1 |
Microsoft | Microsoft SharePoint Server | affected 2019affected 2010 Service Pack 2 |
References
https://slashcrypto.org/2021/01/15/CVE-2020-1456/
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now