References https://learn.microsoft.com/zh-cn/security-updates/securitybulletins/2012/ms12-020 https://www.tenablecloud.cn/plugins/nessus/58435 https://www.cert.org.cn/publish/main/9/2019/20190515134947228198452/20190515134947228198452_.html https://www.sangfor.com.cn/news/2019091600 https://its.ncepu.edu.cn/wlaq/3521b9e540a4493c868d804cdb4a7a5d.htm https://net.usst.edu.cn/2019/0516/c6850a150349/page.htm https://www.anquanke.com/post/id/307503 https://www.sheyang.gov.cn/art/2019/9/16/art_23376_3234168.html https://support.microsoft.com/zh-cn/topic/cve-2019-0708-%E7%9A%84%E5%AE%A2%E6%88%B7%E6%8C%87%E5%8D%97-%E8%BF%9C%E7%A8%8B%E6%A1%8C%E9%9D%A2%E6%9C%8D%E5%8A%A1%E8%BF%9C%E7%A8%8B%E6%89%A7%E8%A1%8C%E4%BB%A3%E7%A0%81%E6%BC%8F%E6%B4%9E-2019-%E5%B9%B4-5-%E6%9C%88-14-%E6%97%A5-0624e35b-5f5d-6da7-632c-27066a79262e
Related VulnerabilitiesPoCCVE-2026-58644: Microsoft SharePoint Server - WS-Federation BinaryFormatter Deserialization RCEMicrosoft SharePoint /_layouts/15/ToolPane.aspx 代码执行漏洞(CVE-2025-53770)Microsoft SharePoint Server /_trust/default.aspx 代码执行漏洞(CVE-2026-50522)Microsoft SharePoint Server JWT 权限绕过漏洞(CVE-2026-55040)Windows截图工具NTLM信息泄露漏洞(CVE-2026-33829)Gradio /static//windows/win.ini 文件读取漏洞 (CVE-2026-28414)Windows Shell Link 敏感信息泄露与欺骗漏洞(CVE-2026-25185)PoCCVE-2021-28480: Microsoft Exchange - Pre-Auth SSRF / ACL Bypass (ProxyNotFound)PoCCVE-2021-28481: Microsoft Exchange - Pre-Auth SSRF / ACL Bypass (ProxyNotFound)PoCsharepoint-lists-api-disclosure: Microsoft SharePoint - List API DisclosurePoCCVE-2025-13315: Twonky Server 8.5.2 on Linux and Windows - Log File ExposurePoCsharepoint-layouts-disclosure: Microsoft SharePoint - Layouts DisclosurePoCsharepoint-masterpage-disclosure: Microsoft SharePoint - Master Page Disclosure