Microsoft SharePoint Server Remote Code Execution Vulnerability

CVE-2024-43464
7.2HIGH

Key Information

Vendor
Microsoft
Status
Microsoft Sharepoint Enterprise Server 2016
Microsoft Sharepoint Server 2019
Microsoft Sharepoint Server Subscription Edition
Vendor
CVE Published:
10 September 2024

Summary

Microsoft SharePoint Server Remote Code Execution Vulnerability

Affected Version(s)

Microsoft SharePoint Enterprise Server 2016 < 16.0.5465.1001

Microsoft SharePoint Server 2019 < 16.0.10414.20002

Microsoft SharePoint Server Subscription Edition < 16.0.17928.20086

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre DatabaseMicrosoft Feed
.