VulDB: Microsoft SharePoint up to 2010 SP1 scriptesx.ashx cross site scripting
General

scipID: 5644
Affected: Microsoft SharePoint up to 2010 SP1
Published: 07/10/2012
Risk:
problematic
Entry: 90.3% complete
Created: 07/11/2012
Updated: 09/03/2012
Summary
A vulnerability has been found in Microsoft SharePoint up to 2010 SP1 and classified as problematic. This vulnerability affects an unknown function of the file scriptesx.ashx. The manipulation with an unknown input leads to a cross site scripting vulnerability. As an impact it is known to affect confidentiality, integrity, and availability.
The weakness was shared 07/10/2012 as MS12-050 as bulletin (Microsoft Technet). The advisory is shared for download at technet.microsoft.com. The vendor cooperated in the coordination of the public release. This vulnerability was named CVE-2012-1859 since 03/22/2012. The exploitability is told to be easy. The attack can be initiated remotely. No form of authentication is required for a successful exploitation. Technical details and also a private exploit are known.
By approaching the search of inurl:scriptesx.ashx it is possible to find vulnerable targets with Google Hacking.
Applying the patch MS12-050 is able to eliminate this problem. The bugfix is ready for download at technet.microsoft.com. A possible mitigation has been published immediately after the disclosure of the vulnerability. The vulnerability is also documented in the databases at OSVDB (83650) and Secunia (SA49875).CVSS
Base Score: 7.5 (CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P) [?]
| Access Vector | Access Complexity | Authentication | Confidentiality | Integrity | Availability |
|---|---|---|---|---|---|
| Local | High | Multiple | None | None | None |
| Adjacent | Medium | Single | Partial | Partial | Partial |
| Network | Low | None | Complete | Complete | Complete |
Exploiting
Class: Cross site scripting
Local: No
Remote: Yes
Availability: Yes
Access: Private
Google Hack: inurl:scriptesx.ashx
Countermeasures
Recommended: Patch
Reaction Time: 0 days since reported
0-Day Time: 0 days since found
Exposure Time: 0 days since known
Patch: MS12-050
Timeline
03/22/2012 | CVE assigned
07/10/2012 | Advisory disclosed
07/10/2012 | Countermeasure disclosed
07/10/2012 | OSVDB entry created
07/11/2012 | VulDB entry created
09/03/2012 | VulDB entry updated
Sources
Advisory: MS12-050
Coordinated: Yes
OSVDB: 83650
CVE: CVE-2012-1859 (mitre.org) (nist.org) (cvedetails.com)
Secunia: 49875



















