VDB
CVE-2024-30044
CVE-2024-30044
PUBLISHED
Es existiert eine Schwachstelle in Microsoft SharePoint und Microsoft SharePoint Server. Diese ist auf einen Fehler bei der Deserialisierung von Daten zurückzuführen. Ein entfernter, authentisierter Angreifer kann diese Schwachstelle ausnutzen, um beliebigen Programmcode auszuführen.
EPSS 16.86% · 95.1th percentile
Risk Scores
EPSS Score
16.86%
95.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Microsoft SharePoint Enterprise Server 2016 | |
| Microsoft | Microsoft SharePoint Server Subscription Edition | |
| Microsoft | Microsoft SharePoint Server 2019 |
Exploit Intelligence
- https://www.microsoft.com/en-us/msrc/exploitability-index?rtc=1 (msrc)
- Microsoft SharePoint Server Remote Code Execution Vulnerability (circl)
- 853.html (github-poc)
- 853.html (github-poc)
- 853.html (github-poc)
- 853.html (github-poc)
- 853.html (github-poc)
- 853.html (github-poc)
- 853.html (github-poc)
- 853.html (github-poc)
Timeline
- May 14, 2024 CVE Published
- May 15, 2024 EPSS Score
- Jul 3, 2024 EPSS Score
- Jul 27, 2024 EPSS Score
- Sep 12, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 6, 2024 EPSS Score
- Nov 23, 2024 EPSS Score
- Jan 11, 2025 EPSS Score
- Jan 21, 2025 Coalition ESS Score
- Jan 30, 2025 Coalition ESS Score
- Feb 4, 2025 EPSS Score