Executive Summary

Microsoft has released a security update for Microsoft SharePoint Server. The update provides a defense in depth enhancement regarding redirections.

Overview

None
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
Category Defense in Depth
Released Nov 12 2024
Last Updated Nov 12 2024
Publicly Disclosed No
CISA KEV Not Listed
Known Exploits None Known

EPSS Score

No EPSS score available for this CVE.

View on FIRST.org

Affected Products

3 affected products
Product KB Article Severity Impact Restart Required
Microsoft SharePoint Enterprise Server 2016 5002654 (Security Update) None Defense in Depth Yes
Microsoft SharePoint Server 2019 5002650 (Security Update) None Defense in Depth Yes
Microsoft SharePoint Server Subscription Edition 5002651 (Security Update) None Defense in Depth Maybe

Patches

3 patches
Article Type Restart
5002654 Security Update Yes
5002650 Security Update Yes
5002651 Security Update Maybe

Known Exploits

Acknowledgments

Microsoft has not published researcher acknowledgments for this CVE, or they are not yet reflected in our data source. Check the MSRC advisory directly for the most current credit information.