Files
CVEs-PoC/2021/CVE-2021-31181.md
T
2024-05-25 21:48:12 +02:00

26 lines
1.3 KiB
Markdown

### [CVE-2021-31181](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-31181)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SharePoint%20Enterprise%20Server%202016&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SharePoint%20Foundation%202013%20Service%20Pack%201&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SharePoint%20Server%202019&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=15.0.0%3C%2015.0.5345.1000%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=16.0.0%3C%2016.0.10374.20000%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=16.0.0%3C%2016.0.5161.1000%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Remote%20Code%20Execution&color=brighgreen)
### Description
Microsoft SharePoint Remote Code Execution Vulnerability
### POC
#### Reference
- http://packetstormsecurity.com/files/163208/Microsoft-SharePoint-Unsafe-Control-And-ViewState-Remote-Code-Execution.html
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/H0j3n/EzpzSharepoint
- https://github.com/hktalent/ysoserial.net
- https://github.com/puckiestyle/ysoserial.net
- https://github.com/pwntester/ysoserial.net