CVE-2020-1323: Microsoft SharePoint Enterprise Server

Medium severity, CVSS 6.1. EPSS: 2.1% chance of exploitation in the next 30 days.

An open redirect vulnerability exists in Microsoft SharePoint that could lead to spoofing.To exploit the vulnerability, an attacker could send a link that has a specially crafted URL and convince the user to click the link, aka 'SharePoint Open Redirect Vulnerability'.

Affected products

  • Microsoft SharePoint Enterprise Server: version 2016 only
  • Microsoft SharePoint Server: version 2013 only; version 2019 only

Published 2020-06-09. Last modified 2026-06-17.