CVE-2022-41122HighCVSS 6.5
Microsoft SharePoint Server Spoofing Vulnerability
🔗 CVE IDs covered (1)
📋 Description
According to the CVSS metric, privileges required is low (PR:L). What does that mean for this vulnerability? The attacker must be authenticated and possess the permissions for page creation to be able to exploit this vulnerability.
What type of information could be disclosed by this vulnerability? The type of information that could be disclosed if an attacker successfully exploited this vulnerability is sensitive information.
🎯 Affected products5
- Microsoft SharePoint Enterprise Server 2013 Service Pack 1
- Microsoft SharePoint Enterprise Server 2016
- Microsoft SharePoint Foundation 2013 Service Pack 1
- Microsoft SharePoint Server 2019
- Microsoft SharePoint Server Subscription Edition
✅ Remediation
KB5002269 (Security Update) — fixed build 16.0.5361.1002 KB5002264 (Cumulative Update) — fixed build 15.0.5485.1000 KB5002267 (Security Update) — fixed build 15.0.5485.1000 KB5002258 (Security Update) — fixed build 16.0.10390.20000 KB5002271 (Security Update) — fixed build 16.0.15601.20052
🔗 References (15)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41122
- patchhttps://www.microsoft.com/download/details.aspx?familyid=27e5d441-41bb-42c3-8e4e-14775c96de2d
- referencehttps://support.microsoft.com/kb/5002269
- referencehttps://support.microsoft.com/help/5002269
- patchhttps://www.microsoft.com/download/details.aspx?familyid=21ec2696-1aff-4662-b0a4-f0fad0c99a05
- referencehttps://support.microsoft.com/kb/5002264
- patchhttps://www.microsoft.com/download/details.aspx?familyid=3f67bfcd-bc5d-4202-9cc1-f75a382ce3b6
- referencehttps://support.microsoft.com/kb/5002267
- referencehttps://support.microsoft.com/help/5002267
- patchhttps://www.microsoft.com/download/details.aspx?familyid=df4dec61-80ba-4027-8bca-07c92570f48e
- referencehttps://support.microsoft.com/kb/5002258
- referencehttps://support.microsoft.com/help/5002258
- patchhttps://www.microsoft.com/download/details.aspx?familyid=ea9525e4-53f9-42ee-ae42-cc83495a62a4
- referencehttps://support.microsoft.com/kb/5002271
- referencehttps://support.microsoft.com/help/5002271