CVE-2020-1147
Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability
7.8
CVSS 3.1
94.0 %
EPSS (current)
2021-11-03
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Microsoft / .NET Framework, SharePoint, Visual Studio
Published: 2020-07-14 · Due (CISA): 2022-05-03
CWE: – · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| metasploit | exploit/windows/http/sharepoint_data_deserialization | exploit/windows/http/sharepoint_data_deserialization | 2020-07-14 |
| exploitdb | 48747 | Microsoft SharePoint Server 2019 - Remote Code Execution | 2020-08-17 |
| exploitdb | 50151 | Microsoft SharePoint Server 2019 - Remote Code Execution (2) | 2021-07-23 |
References only — no downloads or instructions.