ZeroHour

CVE-2020-1439

CVSS 3.1
8.8 high
EPSS
20%p97
Published
()
Modified
Description

A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails to check the source markup of XML file input, aka 'PerformancePoint Services Remote Code Execution Vulnerability'.

Vendors
microsoft
Products
sharepoint enterprise server, sharepoint foundation, sharepoint server
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.