Last modified by Nicolas Gregoire on 2012/02/03 18:27


Dixit Wikipedia, "Microsoft SharePoint is a web application platform developed by Microsoft. First launched in 2001, SharePoint is typically associated with web content management and document management systems, but it is actually a much broader platform of web technologies, capable of being configured to suit a wide range of solution areas."

CVE-2011-1892 aka MS11-074

This is a classic XML External Entity Attack, leading to file disclosure or hashes stealing.