CVE-2020-1147 can be leveraged against a SharePoint Server instance to gain remote code execution as a low privileged user. The vulnerability was discovered independently by Oleksandr Mirosh, Markus Wulftange and Jonathan Birch. I am not providing a full exploit, so if thats your jam, move along. I share the breakdown of the vulnerability with the details on how it can be used to exploit SharePoint server vulnerabilities. In this article, we look at how this vulnerability manifested and how an attacker might exploit it.”]

