A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-1099, CVE-2020-1100, CVE-2020-1101.
No PoCs from references.
- https://github.com/20142995/nuclei-templates
- https://github.com/Live-Hack-CVE/CVE-2020-1106
- https://github.com/cyb3r-w0lf/nuclei-template-collection