CVE-2013-0083

Microsoft SharePoint Server 2010 SP1 - Cross-Site Scripting

Title source: llm
STIX 2.1

Description

Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2010 SP1 allows remote attackers to inject arbitrary web script or HTML via crafted content, leading to administrative command execution, aka "SharePoint XSS Vulnerability."

References (2)

Core 2
Core References
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/ncas/alerts/TA13-071A

Scores

EPSS 0.1433
EPSS Percentile 96.2%

Details

CWE
CWE-79
Status published
Products (2)
microsoft/sharepoint_foundation 2010 sp1
microsoft/sharepoint_server 2010 sp1
Published Mar 13, 2013
Tracked Since Feb 18, 2026