The Microsoft Security Response Team has identified an Important security vulnerability. This vulnerability potentially allows an attacker to send a specifically crafted request to a susceptible SharePoint system which would allow the attacker to read from the filesystem. Since this vulnerability has not been exploited, the specifics of the vulnerability have not been publicly disclosed. This vulnerability impacts SharePoint 2019, 2016, 2013 and 2010. It can be remediated with a Microsoft Security update. For further information, refer to the following:
Product |
Article |
Download |
Microsoft SharePoint Enterprise Server 2016 |
||
Microsoft SharePoint Foundation 2010 Service Pack 2 |
||
Microsoft SharePoint Foundation 2013 Service Pack 1 |
||
Microsoft SharePoint Server 2019 |
https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2019-1491#ID0EWIAC
For assistance remediating this issue, please contact ZAACT HERE.