QID 110394

Date Published: 2021-11-10

QID 110394: Microsoft SharePoint Enterprise Server 2013 Service Pack 1 (SP1) Remote Code Execution (RCE) Vulnerability - November 2021

Microsoft has released November 2021 security updates to fix multiple security vulnerabilities.

This security update contains the following KBs:

KB5002063
QID Detection Logic:
This authenticated QID checks the file versions from the above Microsoft KB article with the versions on the affected SharePoint system.

Successful exploitation allows remote code execution.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    Refer to Microsoft Security Guidance for more details pertaining to this vulnerability.

    KB5002063

    Vendor References

    CVEs related to QID 110394

    Software Advisories
    Advisory ID Software Component Link
    Microsoft Office and Microsoft Office Services and Web Apps Security Update November 2021 URL Logo msrc.microsoft.com/update-guide/en-us