CVE-2020-0971 PUBLISHED CVSS 6.5 MEDIUM

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929, CVE-2020-0931, CVE-2020-0932, CVE-2020-0974.

EPSS 22.50% · 95.8th percentile

Risk Scores

CVSS v2.0
6.5
EPSS Score
22.50%
95.8th percentile

Affected Products

VendorProductVersions
microsoftsharepoint_foundation2010, 2013
MicrosoftMicrosoft SharePoint Server2019
MicrosoftMicrosoft SharePoint Enterprise Server2016
microsoftsharepoint_server2019
MicrosoftMicrosoft SharePoint Foundation2013 Service Pack 1, 2010 Service Pack 2
microsoftsharepoint_enterprise_server2016

Timeline

References

Open in Interactive Console →