CVE-2013-3179
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "SharePoint XSS Vulnerability."
- Affected products
- Sharepoint Server, Sharepoint Foundation
- Microsoft Sharepoint Foundation
- = 2010
- Microsoft Sharepoint Server
- = 2007, 2010
- Microsoft Sharepoint Services
- = 3.0
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 14.2% (96th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2013-09-11
CVE-2013-3179 at NVD
1 known exploit for CVE-2013-3179
Proof-of-concept code and exploit modules indexed by Sploitus