CVE-2023-38177HighCVSS 6.1
Microsoft SharePoint Server Remote Code Execution Vulnerability
🔗 CVE IDs covered (1)
📋 Description
How could an attacker exploit the vulnerability? An attacker could exploit the vulnerability by exploiting vulnerable APIs through a deserialization of unsafe data input vulnerability. Exploitation of this vulnerability requires that a user access a susceptible API on an affected version of SharePoint with a specially-formatted input file resulting in possible remote code execution on the SharePoint Server.
How could an attacker exploit this vulnerability? In a network-based attack, an authenticated attacker could execute code remotely within the SharePoint Server.
🎯 Affected products3
- Microsoft SharePoint Enterprise Server 2016
- Microsoft SharePoint Server 2019
- Microsoft SharePoint Server Subscription Edition
✅ Remediation
KB5002517 (Security Update) — fixed build 16.0.5422.1000 KB5002526 (Security Update) — fixed build 16.0.10404.20003 KB5002527 (Security Update) — fixed build 16.0.16731.20350
🔗 References (7)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38177
- patchhttps://www.microsoft.com/download/details.aspx?familyid=e4282197-50eb-4374-a0cb-673fedcaefcd
- referencehttps://support.microsoft.com/help/5002517
- patchhttps://www.microsoft.com/download/details.aspx?familyid=8535debd-1561-4a47-b60a-f92c426e0f4a
- referencehttps://support.microsoft.com/help/5002526
- patchhttps://www.microsoft.com/download/details.aspx?familyid=76bb0325-13a2-44d8-9846-89cf939867d8
- referencehttps://support.microsoft.com/help/5002527