← Back

CVE-2011-1891

nvd nist
Published: Sep 15, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in Microsoft Windows SharePoint Services 3.0 SP2, and SharePoint Foundation 2010 Gold and SP1, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters in a request to a script, aka "Contact Details Reflected XSS Vulnerability."

Affected (4)

2 products
Sharepoint Foundation
Sharepoint Services
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2010
Version 2010 sp1
Microsoft
Version 3.0 sp2
Version 3.0 sp2

Timeline

No history available yet.