Microsoft SharePoint Server Remote Code Execution VulnerabilityVendor advisory
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-22005 CVE-2022-22005
HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability
Record summary
CVE-2022-22005 has a selected CVSS score of 8.8 (high).
Description
Microsoft SharePoint Server Remote Code Execution Vulnerability.
Description source: GitHub Advisory
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Jul 25, 2024 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
5| Product | Source | Version range | Status |
|---|---|---|---|
Microsoft SharePoint Enterprise Server 2013 Service Pack 1Browse Microsoft / Microsoft SharePoint Enterprise Server 2013 Service Pack 1 | CVE List | 15.0.0 to < 15.0.5423.1000 | affected |
Microsoft SharePoint Enterprise Server 2016Browse Microsoft / Microsoft SharePoint Enterprise Server 2016 | CVE List | 16.0.0 to < 16.0.5278.1000 | affected |
Microsoft SharePoint Server 2019Browse Microsoft / Microsoft SharePoint Server 2019 | CVE List | 16.0.0 to < 16.0.10383.20001 | affected |
Microsoft SharePoint Server Subscription EditionBrowse Microsoft / Microsoft SharePoint Server Subscription Edition | CVE List | 16.0.0 to < 16.0.14326.20742 | affected |
SharePointBrowse Microsoft / SharePoint | VulnCheck | Version data not supplied | |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-22005 portal.msrc.microsoft.com
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-22005 zerodayinitiative.com
https://www.zerodayinitiative.com/advisories/ZDI-22-352