Description
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2013 Gold and SP1, SharePoint Foundation 2013 Gold and SP1, Office Web Apps Server 2013 Gold and SP1, and SharePoint Server 2013 Client Components SDK allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "SharePoint XSS Vulnerability."
Published: 2014-05-14
Score: 4.3 Medium
EPSS: 13.3% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Microsoft Office Web Apps Server Sharepoint Foundation Sharepoint Server Sharepoint Server Client Components Sdk
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2024-08-06T09:50:11.164Z

Reserved: 2014-01-29T00:00:00.000Z

Link: CVE-2014-1754

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-05-14T11:13:06.147

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-1754

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses