THREAT OPS › Threat News › [NVD] CVE-2020-1023 (HIGH 8.8) — A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application pool a
[NVD] CVE-2020-1023 (HIGH 8.8) — A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application pool a
CVE-2020-1023 CVSS: 8.8 HIGH Published: 2020-05-21T23:15:11.617
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application pool and the SharePoint server farm account. Exploitation of
MITRE ATT&CK techniques
- SharepointT1213.002
Indicators of compromise
- CVE-2020-1023cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2020-1023