Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2013 SP1 and SharePoint Foundation 2013 SP1 allows remote authenticated users to inject arbitrary web script or HTML via crafted content in an Office Marketplace instance, aka "Microsoft SharePoint Security Feature Bypass Vulnerability."
References
Link | Resource |
---|---|
http://www.securitytracker.com/id/1033804 | Third Party Advisory VDB Entry |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-110 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: microsoft
Published: 2015-10-14T01:00:00
Updated: 2018-10-12T19:57:01
Reserved: 2015-08-14T00:00:00
Link: CVE-2015-6039
JSON object: View
NVD Information
Status : Modified
Published: 2015-10-14T01:59:15.200
Modified: 2018-10-12T22:10:06.407
Link: CVE-2015-6039
JSON object: View
Redhat Information
No data.
CWE