VulnerabilityModified
CVE-2013-5059
Microsoft SharePoint Server 2010 SP1 and SP2 and 2013, and Office Web Apps 2013, allows remote attackers to execute arbitrary code via crafted page content, aka "SharePoint Page Content Vulnerabilities."
MEDIUM 6.8EPSS 10.7%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.7%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Microsoft SharePoint Server 2010 SP1 and SP2 and 2013, and Office Web Apps 2013, allows remote attackers to execute arbitrary code via crafted page content, aka "SharePoint Page Content Vulnerabilities."
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 10.69% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- microsoft/office web apps · microsoft/sharepoint server
- Source
- secure@microsoft.com
References
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.