|
|||
Rule General Information |
---|
Release Date: | 2013-03-12 | |
Rule Name: | Microsoft Sharepoint Directory Traversal Vulnerability -1 (CVE-2013-0084) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL. | |
Impact: | An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information. | |
Affected OS: | Windows, Solaris, Other Unix, FreeBSD, Linux | |
Reference: | MicrosoftSecurityBulletin:MS13-024 |
|
Solutions |
---|
Microsoft has released a patch MS13-024 to eliminate the vulnerability. The patch can be downloaded at http://technet.microsoft.com/security/bulletin/MS13-024 |