Skip to main content

Vendor/product archive

microsoft / project_server CVEs

Beta · best-effort

24 CVEs tagged to microsoft / project_server3 Critical, 12 High, 9 Medium, 0 Low, 0 Unrated.

CVE-2018-8284

Published Jul 11, 2018

A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".NET Framework Remote Code Injection Vulnerability." This aff…

CVSS 8.1 · High

CVE-2017-8551

Published Jun 15, 2017

An elevation of privilege vulnerability exists when Microsoft SharePoint software fails to properly sanitize a specially crafted requests, aka "Microsoft SharePoint XSS vulnerabil…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2015-2503

Published Nov 11, 2015

Microsoft Access 2007 SP3, Excel 2007 SP3, InfoPath 2007 SP3, OneNote 2007 SP3, PowerPoint 2007 SP3, Project 2007 SP3, Publisher 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 20…

CVSS 9.3 · Critical

CVE-2015-1640

Published Apr 14, 2015

Cross-site scripting (XSS) vulnerability in Microsoft Project Server 2010 SP2 and 2013 SP1 allows remote attackers to inject arbitrary web script or HTML via a crafted request, ak…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0251

Published May 14, 2014

Microsoft Windows SharePoint Services 3.0 SP3; SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 Gold and SP1; SharePoint Foundation 2010 SP1 and SP2 and 2013 Gold and SP1; P…

CVSS 9.0 · Critical

CVE-2006-6617

Published Dec 18, 2006

projectserver/logon/pdsrequest.asp in Microsoft Project Server 2003 allows remote authenticated users to obtain the MSProjectUser password for a SQL database via a GetInitializati…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-24 of 24 CVEsPage 1 of 1