Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Windows SharePoint Services and SharePoint Team Services for Windows Server 2003 does not properly validate an HTTP redirection query, which allows remote attackers to inject arbitrary HTML and web script via a cross-site scripting (XSS) attack, or to spoof the web cache.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Windows Sharepoint服务跨站脚本和伪造攻击漏洞
Vulnerability Description
Windows SharePoint Services是美国微软(Microsoft)公司的一种可帮助团队在网站中共享和管理信息和文档的技术。 Windows SharePoint Services存在跨站脚本和伪造问题,远程攻击者可以利用这个漏洞访问目标用户系统上的任何数据,或修改WEB浏览或代理服务器缓冲。跨站脚本问题需要攻击者诱使用户运行恶意脚本,如果这个恶意脚本被运行,就会以目标用户上下文执行,此漏洞需要用户交互,成功利用此问题攻击者可以访问目标用户系统上任何数据。另外存在伪造问题,允许攻击者利用
CVSS Information
N/A
Vulnerability Type
N/A