CVE-2020-1102

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1023, CVE-2020-1024.

Published date
2020-05-21T23:15Z
Last modification date
2020-05-26T18:21Z
Assigner
secure@microsoft.com
Problem type
CWE-434

Impact

CVSS v3 vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NameURLSourceTags
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1102https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1102MISCPatch, Vendor Advisory