← Vulnerability feed

Vulnerability record · CVE-2010-1264 · published 8 June 2010

CVE-2010-1264: Microsoft sharepoint services vulnerability

Microsoft · Sharepoint Services

Unspecified vulnerability in Microsoft Windows SharePoint Services 3.0 SP1 and SP2 allows remote attackers to cause a denial of service (hang) via crafted requests to the Help page that cause repeated restarts of the application pool, aka "Sharepoint Help Page Denial of Service Vulnerability."

4.0 CVSS 2.0 Medium EPSS 24% · top 2.3%
4.0CVSS 2.0 base score
24%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References
16 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in Microsoft Windows SharePoint Services 3.0 SP1 and SP2 allows remote attackers to cause a denial of service (hang) via crafted requests to the Help page that cause repeated restarts of the application pool, aka "Sharepoint Help Page Denial of Service Vulnerability."

AV:N/AC:L/Au:S/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2010-1264 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2013-1330Microsoft sharepoint foundation improper input validation vulnerabilityThe default configuration of Microsoft SharePoint Portal Server 2003 SP3, SharePoint Server 2007 SP3 and 2010 SP1 and SP2, and Office Web Apps 2010 d…EPSS 27%9.3CVE-2015-0085Microsoft excel vulnerabilityUse-after-free vulnerability in Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, Power…EPSS 19%9.3CVE-2013-1315Microsoft excel memory buffer overflow vulnerabilityMicrosoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013; Office Web Apps 2010; Excel 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT…EPSS 29%9.3CVE-2013-3847Microsoft sharepoint foundation memory buffer overflow vulnerabilityMicrosoft Word Automation Services in SharePoint Server 2010 SP1, Word Web App 2010 SP1 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2…EPSS 21%9.0CVE-2014-0251Microsoft office web apps server code injection vulnerabilityMicrosoft Windows SharePoint Services 3.0 SP3; SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 Gold and SP1; SharePoint Foundation 2010 SP1 an…EPSS 14%6.0CVE-2003-0904Microsoft exchange server information exposure vulnerabilityMicrosoft Exchange 2003 and Outlook Web Access (OWA), when configured to use NTLM authentication, does not properly reuse HTTP connections, which can…EPSS 8.2%5.0CVE-2013-0081Microsoft SharePoint unassigned workflow handling denial of serviceSharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1/SP2, and 2013 fail to properly process unassigned workflows. A crafted URL…EPSS 77%analysed4.3CVE-2013-3179Microsoft sharepoint foundation cross-site scripting vulnerabilityCross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitr…EPSS 14%

Source: NIST National Vulnerability Database (record CVE-2010-1264), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.