?? 12629.txt
字號:
Rule--Sid12629--Summary:This event is generated when an attempt is made to exploit a known vulnerability in SharePoint Server.--Impact:Denial of Service. Information disclosure. Loss of integrity. --Detailed Information:Multiple cross-site scripting (XSS) vulnerabilities in Microsoft SharePoint allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO (query string) in "every main page," as demonstrated by default.aspx. NOTE: as of 20070505, a third party was unable to reproduce this issue.--Affected Systems:Microsoft SharePoint Server 2007--Attack Scenarios:--Ease of Attack:--False Positives:None known.--False Negatives:None known.--Corrective Action:Upgrade to the latest non-affected version of the software.Apply the appropriate vendor supplied patches.--Contributors:Sourcefire Vulnerability Research TeamThis document was generated from data supplied by the National Vulnerability Database. A product of the National Institute of Standards and Technology.For more information see http://nvd.nist.gov/--Additional References:--
?? 快捷鍵說明
復(fù)制代碼
Ctrl + C
搜索代碼
Ctrl + F
全屏模式
F11
切換主題
Ctrl + Shift + D
顯示快捷鍵
?
增大字號
Ctrl + =
減小字號
Ctrl + -