Risk Scores
CVSS v3.1
8
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft SharePoint Enterprise Server 2016 16.0.5305.1000 | ||
| Microsoft SharePoint Server Subscription Edition 16.0.14931.20196 | ||
| Microsoft SharePoint Enterprise Server 2016 <16.0.5305.1000 | ||
| Microsoft SharePoint Server 2016 16.0.5305.1000 | ||
| Microsoft SharePoint Server 2019 <16.0.10385.20001 | ||
| Microsoft SharePoint Server 2016 <16.0.5305.1000 | ||
| Microsoft SharePoint Server 2019 16.0.10385.20001 | ||
| Microsoft SharePoint Server Subscription Edition <16.0.14931.20196 | ||
| Microsoft SharePoint Foundation 2013 Service Pack 1 <15.0.5441.1000 | ||
| Microsoft SharePoint Foundation 2013 Service Pack 1 15.0.5441.1000 |
Timeline
- Apr 12, 2022 CVE Published
- Apr 9, 2026 Security Advisory
- Apr 9, 2026 Security Advisory
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24472 advisory
- https://msrc.microsoft.com/csaf/2022/msrc_cve-2022-24472.json advisory
- https://www.microsoft.com/en-us/msrc/exploitability-index?rtc=1 url
- https://support.microsoft.com/lifecycle url
- https://www.first.org/cvss url
- https://support.microsoft.com/kb/5002183 fix
- https://support.microsoft.com/kb/5002180 fix
- https://support.microsoft.com/help/5002191 fix
- https://support.microsoft.com/kb/5002189 fix