VDB
CVE-2022-21987
CVE-2022-21987
PUBLISHED
CVSS 8 HIGH
Microsoft SharePoint Server Spoofing Vulnerability
EPSS 8.17% · 92.3th percentile
Risk Scores
CVSS 3.1
8
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
EPSS Score
8.17%
92.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Microsoft SharePoint Server 2019 | 16.0.0 |
| Microsoft | Microsoft SharePoint Server Subscription Edition | 16.0.0 |
| microsoft | sharepoint_server | 16.0.0, 16.0.0, 2019 |
| microsoft | sharepoint_enterprise_server | 2016 |
| microsoft | sharepoint_foundation | 2013 |
| Microsoft | Microsoft SharePoint Enterprise Server 2016 | 16.0.0 |
| Microsoft | Microsoft SharePoint Enterprise Server 2013 Service Pack 1 | 15.0.0 |
Exploit Intelligence
- https://www.microsoft.com/en-us/msrc/exploitability-index?rtc=1 (msrc)
- Microsoft SharePoint Server Spoofing Vulnerability (circl)
- rules.yar (github-yara)
- rules.yar (github-yara)
- rules.yar (github-yara)
- rules.yar (github-yara)
Timeline
- Feb 8, 2022 CVE Published
- Feb 10, 2022 EPSS Score
- Apr 3, 2022 EPSS Score
- Jul 18, 2022 EPSS Score
- Sep 9, 2022 EPSS Score
- Oct 31, 2022 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 6, 2023 EPSS Score
- Jul 20, 2023 EPSS Score
- Sep 10, 2023 EPSS Score
- Nov 2, 2023 EPSS Score