QID 110434

Date Published: 2023-05-10

QID 110434: Microsoft SharePoint Server Update for May 2023

Microsoft has released May 2023 security updates to fix multiple security vulnerabilities.

This security update contains the following KBs:

KB5002390
KB5002389
KB5002397
QID Detection Logic (Authenticated):
Operating System: Windows
The detection extracts the Install Path for Microsoft Sharepoint via the Windows Registry. Below is the mapping of Filename, patched version and KB details checked for each applicable Product: ONETUTIL.DLL - 16.0.5395.1000 (KB5002397)
ONETUTIL.DLL - 16.0.10398.20000 (KB5002389)
PJINTL.DLL - 16.0.16130.20420 (KB5002390)

Successful exploitation allows an attacker to execute code remotely.

  • CVSS V3 rated as High - 7.2 severity.
  • CVSS V2 rated as Critical - 8.3 severity.
  • Solution
    Refer to Microsoft Security Guidance for more details pertaining to this vulnerability.

    CVEs related to QID 110434

    Software Advisories
    Advisory ID Software Component Link
    May 2023 URL Logo portal.msrc.microsoft.com/en-us/security-guidance