VendorsMicrosoftsharepoint_server2013
Vulnerabilities

Microsoft Sharepoint Server 2013

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

85CVEs
CVE-2015-6039
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2013 SP1 and SharePoint Foundation 2013 SP1 allows remote authenticated users to inject arbitrary web script or HTML via crafted content in an Office Marketplace instance, aka "Microsoft SharePoint Security Feature Bypass Vulnerability."
Published 2015-10-14 · Modified
3.5EPSS 0.091
CVE-2015-6037
Cross-site scripting (XSS) vulnerability in Microsoft Excel Services on SharePoint Server 2010 SP2 and 2013 SP1, Office Web Apps 2010 SP2, Excel Web App 2010 SP2, Office Web Apps Server 2013 SP1, and SharePoint Foundation 2013 SP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, aka "Microsoft Office Web Apps XSS Spoofing Vulnerability."
Published 2015-10-14 · Modified
3.5EPSS 0.085
CVE-2015-1636
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2013 Gold and SP1 and SharePoint Server 2013 Gold and SP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted request, aka "Microsoft SharePoint XSS Vulnerability."
Published 2015-03-11 · Modified
3.5EPSS 0.069
CVE-2015-1633
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2010 SP2, SharePoint Server 2010 SP2, SharePoint Foundation 2013 Gold and SP1, and SharePoint Server 2013 Gold and SP1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted request, aka "Microsoft SharePoint XSS Vulnerability."
Published 2015-03-11 · Modified
3.5EPSS 0.069
CVE-2023-23395
Microsoft SharePoint Server Spoofing Vulnerability
Published 2023-03-14 · Modified
3.1EPSS 0.006
← Prev3 / 3