Lucene search

K
cvelistMicrosoftCVELIST:CVE-2020-1439
HistoryJul 14, 2020 - 10:54 p.m.

CVE-2020-1439

2020-07-1422:54:44
microsoft
www.cve.org
3

9 High

AI Score

Confidence

High

0.013 Low

EPSS

Percentile

85.9%

A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails to check the source markup of XML file input, aka ‘PerformancePoint Services Remote Code Execution Vulnerability’.

CNA Affected

[
  {
    "product": "Microsoft SharePoint Enterprise Server",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "2013 Service Pack 1"
      },
      {
        "status": "affected",
        "version": "2016"
      }
    ]
  },
  {
    "product": "Microsoft SharePoint Server",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "2019"
      },
      {
        "status": "affected",
        "version": "2010 Service Pack 2"
      }
    ]
  },
  {
    "product": "Microsoft SharePoint Foundation",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "2013 Service Pack 1"
      }
    ]
  }
]

9 High

AI Score

Confidence

High

0.013 Low

EPSS

Percentile

85.9%