Vulnerability index

Browse CVEs

356 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
MEDIUM 5.4 CVE-2018-1005 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Sharepoint Enterprise Server Patch available Fix from $1,6002018-04-12 MEDIUM 5.4 CVE-2018-1014 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Sharepoint Enterprise Server Patch available Fix from $1,6002018-04-12 HIGH 8.8 CVE-2018-0947 Microsoft SharePoint Foundation 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how spe… Sharepoint Enterprise Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0923 Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, a… Sharepoint Enterprise Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0944 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability to due how specially… Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0909 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0910 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0911 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0912 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0913 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0914 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0915 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0916 Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially … Project Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0917 Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, a… Sharepoint Enterprise Server Patch available Fix from $1,9502018-03-14 HIGH 8.8 CVE-2018-0921 Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, a… Sharepoint Enterprise Server Patch available Fix from $1,9502018-03-14 MEDIUM 6.1 CVE-2018-0908 Microsoft Identity Manager 2016 SP1 allows an attacker to gain elevated privileges when it does not properly sanitize a specially crafted attribute v… Identity Manager Patch available Fix from $1,6002018-02-26 MEDIUM 5.4 CVE-2018-0864 SharePoint Project Server 2013 and SharePoint Enterprise Server 2016 allow an information disclosure vulnerability due to how web requests are handle… Sharepoint Server Patch available Fix from $1,6002018-02-15 MEDIUM 5.4 CVE-2018-0869 SharePoint Server 2016 allows an elevation of privilege vulnerability due to how web requests are handled, aka "Microsoft SharePoint Elevation of Pri… Sharepoint Enterprise Server Patch available Fix from $1,6002018-02-15 MEDIUM 6.1 CVE-2018-0799 Microsoft Access in Microsoft SharePoint Enterprise Server 2013 and Microsoft SharePoint Enterprise Server 2016 allows a cross-site-scripting (XSS) v… Sharepoint Enterprise Server Patch available Fix from $1,6002018-01-10 MEDIUM 5.4 CVE-2017-11820 Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (… Sharepoint Enterprise Server Patch available Fix from $1,6002017-10-13 MEDIUM 5.4 CVE-2017-11775 Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (… Sharepoint Enterprise Server Patch available Fix from $1,6002017-10-13 MEDIUM 5.4 CVE-2017-11777 Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (… Sharepoint Enterprise Server Patch available Fix from $1,6002017-10-13 MEDIUM 6.1 CVE-2017-8758 Microsoft Exchange Server 2016 allows an elevation of privilege vulnerability when Microsoft Exchange Outlook Web Access (OWA) fails to properly hand… Exchange Server Patch available Fix from $1,6002017-09-13 MEDIUM 5.4 CVE-2017-8745 An elevation of privilege vulnerability exists in Microsoft SharePoint Foundation 2013 Service Pack 1 when it does not properly sanitize a specially … Sharepoint Foundation Patch available Fix from $1,6002017-09-13 MEDIUM 5.4 CVE-2017-8629 Microsoft SharePoint Server 2013 Service Pack 1 allows an elevation of privilege vulnerability when it fails to properly sanitize a specially crafted… Sharepoint Server Patch available Fix from $1,6002017-09-13 MEDIUM 6.1 CVE-2017-8642 Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to elevate privileges due to the way that Microsoft Edge validates JavaScript under sp… Edge Patch available Fix from $1,6002017-08-08 MEDIUM 5.4 CVE-2017-8654 Microsoft SharePoint Server 2010 Service Pack 2 allows a cross-site scripting (XSS) vulnerability when it does not properly sanitize a specially craf… Sharepoint Server Patch available Fix from $1,6002017-08-08 HIGH 8.8 CVE-2017-8569EPSS 5% Microsoft SharePoint Server allows an elevation of privilege vulnerability due to the way that it sanitizes a specially crafted web request to an aff… Sharepoint Server Patch available Fix from $1,9502017-07-11 MEDIUM 6.1 CVE-2017-8559 Microsoft Exchange Server 2010 SP3, Exchange Server 2013 SP3, Exchange Server 2013 CU16, and Exchange Server 2016 CU5 allows an elevation of privileg… Exchange Server Patch available Fix from $1,6002017-07-11 MEDIUM 6.1 CVE-2017-8560 Microsoft Exchange Server 2010 SP3, Exchange Server 2013 SP3, Exchange Server 2013 CU16, and Exchange Server 2016 CU5 allows an elevation of privileg… Exchange Server Patch available Fix from $1,6002017-07-11