CVE-2013-3179

Microsoft SharePoint Server - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "SharePoint XSS Vulnerability."

Exploits (1)

exploitdb WRITEUP
by Vulnerability-Lab · textwebappswindows
https://www.exploit-db.com/exploits/28238

Scores

EPSS 0.1060
EPSS Percentile 93.2%

Classification

CWE
CWE-79
Status draft

Affected Products (6)

microsoft/sharepoint_foundation
microsoft/sharepoint_foundation
microsoft/sharepoint_server
microsoft/sharepoint_server
microsoft/sharepoint_server
microsoft/sharepoint_services

Timeline

Published Sep 11, 2013
Tracked Since Feb 18, 2026