CVE-2019-0604

Scores

EPSS

0.944high94.4%
0%20%40%60%80%100%

Percentile: 94.4%

CVSS

9.8critical3.x
0246810

CVSS Score: 9.8/10

All CVSS Scores

CVSS 3.x
9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS 2.0
7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Description

A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka ‘Microsoft SharePoint Remote Code Execution Vulnerability’. This CVE ID is unique from CVE-2019-0594.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-20

Related Vulnerabilities

Exploits

Exploit ID: 48053

Source: exploitdb

URL: https://www.exploit-db.com/exploits/48053

Exploit ID: CVE-2019-0604

Source: github-poc

URL: https://github.com/davidlebr1/cve-2019-0604-SP2010-netv3.5

Vulnerable Software (112)

Type: Configuration

Vendor: *

Product: sharepoint_enterprise_server

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:microsoft:sharepoin...

Source: nvd

Type: Configuration

Vendor: *

Product: sharepoint_foundation

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:microsoft:sharepoin...

Source: nvd

Type: Configuration

Vendor: *

Product: sharepoint_server

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:microsoft:sharepoin...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4462199

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10392.20000

Operating System: Windows 10392 build 20000

Identifier: KB5002294

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4484271

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10406.20000

Operating System: Windows 10406 build 20000

Identifier: KB5002539

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10416.20041

Operating System: Windows 10416 build 20041

Identifier: KB5002666

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10399.20005

Operating System: Windows 10399 build 20005

Identifier: KB5002402

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10393.20000

Operating System: Windows 10393 build 20000

Identifier: KB5002311

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4493230

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10377.20000

Operating System: Windows 10377 build 20000

Identifier: KB5002000

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10417.20047

Operating System: Windows 10417 build 20047

Identifier: KB5002775

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10394.20021

Operating System: Windows 10394 build 20021

Identifier: KB5002329

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10415.20001

Operating System: Windows 10415 build 20001

Identifier: KB5002647

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4484400

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4484505

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10375.20000

Operating System: Windows 10375 build 20000

Identifier: KB5001944

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10386.20011

Operating System: Windows 10386 build 20011

Identifier: KB5002207

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16.0.10414.20002

Operating System: Windows 10414 build 20002

Identifier: KB5002639

Source: msrc