AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-11820

MEDIUM · CVSS 5.4 EPSS 2.27% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-10-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2017-11820
Severity
MEDIUM
CVSS
5.4
EPSS
2.27%
Microsoft SharePoint Office

Original NVD Description

Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (XSS) vulnerability by sending a specially crafted request to an affected SharePoint server, due to how SharePoint Server sanitizes web requests, aka "Microsoft Office SharePoint XSS Vulnerability". This CVE ID is unique from CVE-2017-11775 and CVE-2017-11777.