CVE-2021-28450: Microsoft SharePoint Denial of Service Update

Overview

Severity
Medium (CVSS 5)
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:L/E:U/RL:O/RC:C
Category
Denial of Service
Exploit Status
Not Exploited
Exploitation Likelihood
Less Likely
Patch Tuesday
2021-Apr
Released
2021-04-13
EPSS Score
1.99% (percentile: 83.6%)

Affected Products (4)

Microsoft Office

  • Microsoft SharePoint Enterprise Server 2016
  • Microsoft SharePoint Enterprise Server 2013 Service Pack 1
  • Microsoft SharePoint Server 2019
  • Microsoft SharePoint Foundation 2010 Service Pack 2

Security Updates (4)

Acknowledgments

Yuhao Weng (<a href="https://twitter.com/cjm00nw">@cjm00nw</a>) of <a href="https://www.sangfor.com/">Sangfor</a> & Steven Seeley (<a href="https://twitter.com/steventseeley">@ϻг_ϻε</a>) & Zhiniang Peng(<a href="https://twitter.com/edwardzpeng">@edwardzpeng</a>

Revision History

  • 2021-04-13: Information published.