Saturday, May 1, 2010

Unpatched Vulnerability In Microsoft SharePoint

Microsoft is investigating reported cross-site scripting (XSS) vulnerability in SharePoint Services 3.0 and SharePoint Server 2007. "The vulnerability could allow an attacker to run arbitrary script that could result in elevation of privilege within the SharePoint site, as opposed to elevation of privilege within the workstation or server environment."

More information and instructions how to mitigate the issue can be found here.

No comments: