A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0594.
References
| Link | Resource |
|---|---|
| http://www.securityfocus.com/bid/106914 | Broken Link Third Party Advisory VDB Entry |
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0604 | Patch Vendor Advisory |
| http://www.securityfocus.com/bid/106914 | Broken Link Third Party Advisory VDB Entry |
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0604 | Patch Vendor Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-0604 |
Configurations
Configuration 1 (hide)
|
History
22 Oct 2025, 00:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| References | () http://www.securityfocus.com/bid/106914 - Broken Link, Third Party Advisory, VDB Entry |
04 Apr 2025, 15:33
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www.securityfocus.com/bid/106914 - Third Party Advisory, VDB Entry, Broken Link |
Information
Published : 2019-03-05 23:29
Updated : 2025-10-22 00:16
NVD link : CVE-2019-0604
Mitre link : CVE-2019-0604
CVE.ORG link : CVE-2019-0604
JSON object : View
Products Affected
microsoft
- sharepoint_enterprise_server
- sharepoint_foundation
- sharepoint_server
CWE
CWE-20
Improper Input Validation
