CVE Published: 13/10/2017 |
CVE Updated: 17/09/2024 |
CVE Year: 2017 Source: microsoft |
Vendor: Microsoft Corporation |
Product: Microsoft SharePoint Enterprise Server Status : PUBLISHED
CVE-2017-11775 Description
Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (XSS) vulnerability by sending a specially crafted request to an affected SharePoint server, due to how SharePoint Server sanitizes web requests, aka "Microsoft Office SharePoint XSS Vulnerability". This CVE ID is unique from CVE-2017-11777 and CVE-2017-11820.