Microsoft SharePoint Foundation是美国微软(Microsoft)公司的一套基于Web的面向小型组织或部门的协作平台。 Microsoft SharePoint Foundation 2013 SP1版本中存在跨站脚本漏洞,该漏洞源于程序没有正确清理用户提供的Web请求。远程攻击者可利用该漏洞执行跨站脚本攻击,并使用看似可信的恶意内容(在登录用户的安全上下文中)运行脚本,盗取敏感内容(包括身份验证Cookie和最新提交的数据)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2015-2527 | Microsoft Windows Win32k 特权提升漏洞 | |
| CVE-2015-6680 | Adobe Shockwave Player 拒绝服务漏洞 | |
| CVE-2015-2542 | Microsoft浏览器内存损坏漏洞 | |
| CVE-2015-2545 | Microsoft Office 远程执行代码漏洞 | |
| CVE-2015-2544 | Microsoft Exchange Server 欺骗漏洞 | |
| CVE-2015-2543 | Microsoft Exchange Server 欺骗漏洞 | |
| CVE-2015-2546 | Microsoft Windows Win32k 特权提升漏洞 | |
| CVE-2015-2530 | Microsoft Windows Journal RCE漏洞 | |
| CVE-2015-2529 | Microsoft Windows内核ASLR绕过漏洞 | |
| CVE-2015-2528 | Microsoft Windows任务管理特权提升漏洞 | |
| CVE-2015-2531 | Microsoft Lync Server和Skype for Business Server 跨站脚本漏洞 | |
| CVE-2015-2526 | Microsoft .NET Framework MVC 拒绝服务漏洞 | |
| CVE-2015-2525 | Microsoft Windows Task Scheduler 特权提升漏洞 | |
| CVE-2015-2524 | Microsoft Windows任务管理特权提升漏洞 | |
| CVE-2015-2523 | Microsoft Office 内存损坏漏洞 | |
| CVE-2015-2521 | Microsoft Office 内存损坏漏洞 | |
| CVE-2015-2520 | Microsoft Office 内存损坏漏洞 | |
| CVE-2015-2519 | Microsoft Windows Journal 整数溢出漏洞 | |
| CVE-2015-2518 | Microsoft Windows Win32k 特权提升漏洞 | |
| CVE-2015-2517 | Microsoft Windows Win32k 特权提升漏洞 |
Showing top 20 of 54 CVEs. View all on vendor page → →
No comments yet