CVE-2013-3895

Severity

68%

Complexity

86%

Confidentiality

106%

Microsoft SharePoint Server 2007 SP3 and 2010 SP1 and SP2 allows remote attackers to conduct clickjacking attacks via a crafted web page, aka "Parameter Injection Vulnerability."

Microsoft SharePoint Server 2007 SP3 and 2010 SP1 and SP2 allows remote attackers to conduct clickjacking attacks via a crafted web page, aka "Parameter Injection Vulnerability."

CVSS 2.0 Base Score 6.8. CVSS Attack Vector: network. CVSS Attack Complexity: medium. CVSS Vector: (AV:N/AC:M/Au:N/C:P/I:P/A:P).

Overview

Type

Microsoft

First reported 11 years ago

2013-10-09 14:53:00

Last updated 6 years ago

2018-10-12 22:05:00

Affected Software

Microsoft Office Web Apps 2010

2010

Microsoft SharePoint Server 2007 Service Pack 3

2007

Microsoft SharePoint Server 2010 Service Pack 1

2010

Microsoft Sharepoint Server 2010 Service Pack 2

2010

Microsoft SharePoint Server 2013

2013

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.