CVE-2020-1323

MEDIUM

Microsoft SharePoint - Open Redirect via Specially Crafted URL

Title source: llm
STIX 2.1

Description

An open redirect vulnerability exists in Microsoft SharePoint that could lead to spoofing.To exploit the vulnerability, an attacker could send a link that has a specially crafted URL and convince the user to click the link, aka 'SharePoint Open Redirect Vulnerability'.

References (1)

Core 1
Core References

Scores

CVSS v3 6.1
EPSS 0.0239
EPSS Percentile 81.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-601
Status published
Products (3)
microsoft/sharepoint_enterprise_server 2016
microsoft/sharepoint_server 2013 sp1
microsoft/sharepoint_server 2019
Published Jun 09, 2020
Tracked Since Feb 18, 2026