Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-30043. PoCs published by W01fh4cker.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2024-30043, an XXE vulnerability in Microsoft SharePoint Server 2019. The exploit leverages URL parsing confusion to trigger an out-of-band data exfiltration via a crafted DTD and ASPX file, allowing arbitrary file reads.
Description
Microsoft SharePoint Server Information Disclosure Vulnerability
Exploits (1)
This repository contains a functional exploit for CVE-2024-30043, an XXE vulnerability in Microsoft SharePoint Server 2019. The exploit leverages URL parsing confusion to trigger an out-of-band data exfiltration via a crafted DTD and ASPX file, allowing arbitrary file reads.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N