Vulnerability Details CVE-2008-5026
                Microsoft SharePoint uses URLs with the same hostname and port number for a web site's primary files and individual users' uploaded files (aka attachments), which allows remote authenticated users to leverage same-origin relationships and conduct cross-site scripting (XSS) attacks by uploading HTML documents.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.163
                        
                    
                    
                        
                            EPSS Ranking 94.6%
                        
                    
                 
                
                    CVSS Severity
                    
                    
                        
                            CVSS v2 Score 3.5
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2008-5026
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:16.0.17328.20246
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:16.0.17328.20292
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:16.0.17328.20362
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:16.0.17928.20356
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:16.0.17928.20396
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:2007
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:2010
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:2013
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:2016
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:microsoft:sharepoint_server:2019