THREAT OPS › Threat News › [NVD] CVE-2020-1069 (HIGH 8.8) — A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a specially crafted page to perform actions in t
[NVD] CVE-2020-1069 (HIGH 8.8) — A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a specially crafted page to perform actions in t
CVE-2020-1069 CVSS: 8.8 HIGH Published: 2020-05-21T23:15:12.947
A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls. An authenticated attacker who successfully exploited the vulnerability could use a specially crafted page to perform actions in the security context of the SharePoint application pool
MITRE ATT&CK techniques
- SharepointT1213.002
Indicators of compromise
- CVE-2020-1069cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2020-1069