MS15-036 - Vulnerabilities in Microsoft SharePoint Server Could Allow Elevation of Privilege

Bulletin ID: 

MS15-036

Severity: 

Important

Description: 

This security update resolves vulnerabilities in Microsoft Office server and productivity software. The vulnerabilities could allow elevation of privilege if an attacker sends a specially crafted request to an affected SharePoint server. An attacker who successfully exploited the vulnerabilities could read content that the attacker is not authorized to read, use the victim's identity to take actions on the SharePoint site on behalf of the victim, such as change permissions and delete content, and inject malicious content in the browser of the victim.

Security advisory: 

Related content