Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Microsoft SharePoint uses URLs with the same hostname and port number for a web site's primary files and individual users' uploaded files (aka attachments), which allows remote authenticated users to leverage same-origin relationships and conduct cross-site scripting (XSS) attacks by uploading HTML documents.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft SharePoint 跨站脚本攻击漏洞
Vulnerability Description
微软SharePoint,也称为Microsoft SharePoint产品和技术,是一种产品和软件,其中包括,在越来越多的组件收集,基于Web浏览器的协同功能,流程管理模块,搜索模块和文档管理平台。 Microsoft SharePoint为一个网站的原始文件和个人用户的上传文件(又称附件)使用带有同一个主机名和端口号的URLs,这使得远程认证用户可以通过上传HTML文档,来杠杆化同源关系和执行跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A