logo
Home/CVEs/CVE-2019-0604/

CVE-2019-0604 - Microsoft SharePoint Remote Code Execution Vulnerability

Project:Microsoft

Product:SharePoint

Date Added:2021-11-03Due Date:2022-05-03

Vulnerability Name

Microsoft SharePoint Remote Code Execution Vulnerability

Description

Microsoft SharePoint fails to check the source markup of an application package. An attacker who successfully exploits the vulnerability could run remote code in the context of the SharePoint application pool and the SharePoint server farm account.

Known To Be Used in Ransomware Campaigns?

Known

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2019-0604

Related News Articles

Iranian APT UNC1860 Linked to MOIS Facilitates Cyber Intrusions in Middle EastSeptember 20, 2024

New BiBi Wiper version also destroys the disk partition tableMay 21, 2024