Microsoft SharePoint ServerÐÅϢй¶·ì϶·çÏÕ¹«¸æ

°ä²¼¹¦·ò 2019-12-20

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£º CVE-2019-1491 £¬Î£ÏÕ¼¶±ð£º¸ßΣ £¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Microsoft SharePoint Enterprise Server 2016

Microsoft SharePoint Foundation 2010 SP2

Microsoft SharePoint Foundation 2013 SP1

Microsoft SharePoint Server 2019


·ì϶¸ÅÊö


Microsoft SharePointÊÇÃÀ¹ú΢Èí£¨Microsoft£©¹«Ë¾µÄÒ»ÌׯóÒµÒµÎñºÏ×÷ƽ̨¡£¸Ãƽ̨ÓÃÓÚ¶ÔÒµÎñÐÅÏ¢½øÐÐÕûºÏ £¬²¢¿ÉÄܹ²Ïí¹¤×÷¡¢ÓëËûÈËЭͬ¹¤×÷¡¢×éÖ¯ÏîÄ¿ºÍ¹¤×÷×é¡¢ËÑË÷ÈËÔ±ºÍÐÅÏ¢¡£


Microsoft SharePoint ServerÖдæÔÚÐÅϢй¶·ì϶¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶¶ÁÈ¡·þÎñÆ÷ÉϵÄËÁÒâÎļþ¡£ÒªÀûÓô˷ì϶ £¬¹¥»÷Õß±ØÒªÏòÊÜÓ°ÏìµÄSharePoint ServerÊ·ý·¢ËͶñÒâÒªÇó¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶ £¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£º

https://www.microsoft.com


²Î¿¼Á´½Ó


https://threatpost.com/microsoft-issues-out-of-band-update-sharepoint-bug/151260/