Microsoft Office SharePoint
ADV240001 — Microsoft SharePoint Server Defense in Depth Update
None
2024-11 archive
Executive Summary
Microsoft has released a security update for Microsoft SharePoint Server. The update provides a defense in depth enhancement regarding redirections.
Overview
None
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
EPSS Score
No EPSS score available for this CVE.
View on FIRST.orgAffected Products
3 affected products
| Product | KB Article | Severity | Impact | Restart Required |
|---|---|---|---|---|
| Microsoft SharePoint Enterprise Server 2016 | 5002654 (Security Update) |
None | Defense in Depth | Yes |
| Microsoft SharePoint Server 2019 | 5002650 (Security Update) |
None | Defense in Depth | Yes |
| Microsoft SharePoint Server Subscription Edition | 5002651 (Security Update) |
None | Defense in Depth | Maybe |
Patches
3 patches
| Article | Type | Restart |
|---|---|---|
5002654 |
Security Update | Yes |
5002650 |
Security Update | Yes |
5002651 |
Security Update | Maybe |
Exploits & PoC
No public exploit or PoC has been linked for this CVE yet. When available, references are sourced from public repositories and may be unverified or non-functional — review carefully before use.
Detection Rules
No public Sigma or Nuclei detection rule has been mapped to this CVE yet. Coverage is concentrated on exploited / high-profile vulnerabilities; check SigmaHQ for updates.
Acknowledgments
None
References
On This Page