RULE(RULE ID:305816)

Rule General Information
Release Date: 2013-03-12
Rule Name: Microsoft Sharepoint Directory Traversal Vulnerability -1 (CVE-2013-0084)
Severity:
CVE ID:
Rule Protection Details
Description: Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Solaris, Other Unix, FreeBSD, Linux
Reference: MicrosoftSecurityBulletin:MS13-024
Solutions
Microsoft has released a patch MS13-024 to eliminate the vulnerability. The patch can be downloaded at http://technet.microsoft.com/security/bulletin/MS13-024