CVE-2005-0049 Information

Description

Windows SharePoint Services and SharePoint Team Services for Windows Server 2003 does not properly validate an HTTP redirection query which allows remote attackers to inject arbitrary HTML and web script via a cross-site scripting (XSS) attack or to spoof the web cache.

Reference

http://www.kb.cert.org/vuls/id/340409 http://www.us-cert.gov/cas/techalerts/TA05-039A.html https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-006 https://exchange.xforce.ibmcloud.com/vulnerabilities/19091

Share on: