Expert release a PoC exploit code for a recently addressed critical flaw in Microsoft SharePoint,.NET Framework, and Visual Studio. The flaw is caused by the lack of check of the source markup of XML file input, it could be exploited by an attacker to run arbitrary code in the context of the process where deserialization of XML content occurs. The vulnerability is found in the DataSet and DataTable types which are. Microsoft has not identified any workarounds or mitigations for this vulnerability.”]
Source: https://securityaffairs.co/wordpress/106281/hacking/cve-2020-1147-poc-sharepoint.html

