CVE-2005-0049
Last modified
CVE-2005-0049 is a vulnerability of currently unknown severity. Windows SharePoint Services and SharePoint Team Services for Windows Server 2003 does not properly validate an HTTP redirection query, which allows remote attackers to inject arbitrary HTML and web script via a cross-site scripting (XSS) attack, or to spoof the web cache.. EPSS estimates a 20.19% chance of exploitation in the next 30 days.
Description
Windows SharePoint Services and SharePoint Team Services for Windows Server 2003 does not properly validate an HTTP redirection query, which allows remote attackers to inject arbitrary HTML and web script via a cross-site scripting (XSS) attack, or to spoof the web cache.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Sharepoint Portal Server | 2003 |
| Microsoft | Sharepoint Team Services | All versions |
References
- http://www.kb.cert.org/vuls/id/340409Patch, US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-039A.htmlPatch, US Government Resource
- http://www.kb.cert.org/vuls/id/340409Patch, US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-039A.htmlPatch, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0049?
How severe is CVE-2005-0049?
How do I fix CVE-2005-0049?
Are you affected by CVE-2005-0049?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
