Phân tích lỗ hổng CVE-2022-22005 Microsoft Sharepoint RCE
blog.viettelcybersecurity.com | vulnerability | CVE-2022-22005 | #rce | #microsoft | #deserialization | #sharepoint | #patch-analysis | #cve-2022-22005
Summary
A patch-diff analysis of CVE-2022-22005 (CVSS 8.8), a SharePoint RCE, tracing Microsoft's fix to a serialization binder restricting types during ChartPreviewImage.loadChartImage() deserialization.
- Published
- Collected
Skip to content