CVE-2018-0864: Microsoft SharePoint Server
Medium severity, CVSS 5.4. EPSS: 2.6% chance of exploitation in the next 30 days.
SharePoint Project Server 2013 and SharePoint Enterprise Server 2016 allow an information disclosure vulnerability due to how web requests are handled, aka "Microsoft SharePoint Information Disclosure Vulnerability".
Affected products
- Microsoft SharePoint Server: version 2013 only; version 2016 only
Published 2018-02-15. Last modified 2026-06-17.