Microsoft Vulnerabilities and Affected Products
Vulnerabilities associated with SharePoint.
Products
Clear product- Windows Server 20194,131 vulnerabilities
- Windows Server 2019 (Server Core installation)4,034 vulnerabilities
- Windows 10 Version 18093,762 vulnerabilities
- Windows Server 20163,677 vulnerabilities
- Windows Server 20223,485 vulnerabilities
- Windows Server 2016 (Server Core installation)3,473 vulnerabilities
- Windows 10 Version 16073,184 vulnerabilities
- Windows 10 Version 21H23,063 vulnerabilities
- Windows Server 2012 R22,998 vulnerabilities
- Windows Server 2012 R2 (Server Core installation)2,853 vulnerabilities
- Windows Server 20122,824 vulnerabilities
- Windows Server 2012 (Server Core installation)2,691 vulnerabilities
- Windows 10 Version 22H22,565 vulnerabilities
- Windows 10 Version 15072,277 vulnerabilities
- Windows 11 Version 24H21,924 vulnerabilities
- Windows Server 20251,917 vulnerabilities
- Windows Server 2025 (Server Core installation)1,917 vulnerabilities
- Windows Server 2008 R2 Service Pack 11,874 vulnerabilities
- Windows Server 2008 R2 Service Pack 1 (Server Core installation)1,860 vulnerabilities
- Windows 11 Version 23H21,845 vulnerabilities
- Windows 11 version 22H21,776 vulnerabilities
- Windows Server 2022, 23H2 Edition (Server Core installation)1,725 vulnerabilities
- Windows Server 2008 Service Pack 2 (Server Core installation)1,667 vulnerabilities
- Windows Server 2008 Service Pack 21,664 vulnerabilities
- Windows 11 version 21H21,560 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2026-55040CRITICAL | Microsoft SharePoint Server Security Feature Bypass VulnerabilityWeak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network. CWE-1390Jul 14, 2026 | CVSS9.1v3.1 | EPSS2.96% | PoCs2 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-58644CRITICAL | Microsoft SharePoint Remote Code Execution VulnerabilityDeserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network. CWE-502Jul 14, 2026 | CVSS9.8v3.1 | EPSS6.37% | PoCs1 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-50522CRITICAL | Microsoft SharePoint Remote Code Execution VulnerabilityDeserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network. CWE-502Jul 14, 2026 | CVSS9.8v3.1 | EPSS77% | PoCs5 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-56164MEDIUM | Microsoft SharePoint Server Elevation of Privilege VulnerabilityMissing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network. CWE-306Jul 14, 2026 | CVSS5.3v3.1 | EPSS22.4% | PoCs3 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-45659HIGH | Microsoft SharePoint Remote Code Execution VulnerabilityDeserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. CWE-502May 22, 2026 | CVSS8.8v3.1 | EPSS9.86% | PoCs4 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2026-32201MEDIUM | Microsoft SharePoint Server Spoofing VulnerabilityImproper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network. CWE-20Apr 14, 2026 | CVSS6.5v3.1 | EPSS22.8% | PoCs1 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-20963CRITICAL | Microsoft SharePoint Remote Code Execution VulnerabilityDeserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. CWE-502Jan 13, 2026 | CVSS9.8v3.1 | EPSS31.6% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-53771MEDIUM | Microsoft SharePoint Server Spoofing VulnerabilityImproper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | CVSS6.5v3.1 | EPSS>99.9% | PoCs2 | SignalsNot listed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2025-53770CRITICAL | Microsoft SharePoint Server Remote Code Execution VulnerabilityDeserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, please make sure that the mitigation provided in this CVE documentation is in place so that you are protected from exploitation. | CVSS9.8v3.1 | EPSS>99.9% | PoCs48 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2025-49706MEDIUM | Microsoft SharePoint Server Spoofing VulnerabilityImproper authentication in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | CVSS6.5v3.1 | EPSS99.9% | PoCs4 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2025-49704HIGH | Microsoft SharePoint Remote Code Execution VulnerabilityImproper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. CWE-94Jul 8, 2025 | CVSS8.8v3.1 | EPSS>99.9% | PoCs1 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2024-38094HIGH | Microsoft SharePoint Remote Code Execution VulnerabilityMicrosoft SharePoint Remote Code Execution Vulnerability CWE-502Jul 9, 2024 | CVSS7.2v3.1 | EPSS50.9% | PoCs0 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2024-38024HIGH | Microsoft SharePoint Server Remote Code Execution VulnerabilityMicrosoft SharePoint Server Remote Code Execution Vulnerability CWE-502Jul 9, 2024 | CVSS7.2v3.1 | EPSS45.2% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-38023HIGH | Microsoft SharePoint Server Remote Code Execution VulnerabilityMicrosoft SharePoint Server Remote Code Execution Vulnerability CWE-502Jul 9, 2024 | CVSS7.2v3.1 | EPSS52.9% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-29357CRITICAL | Microsoft SharePoint Server Elevation of Privilege VulnerabilityMicrosoft SharePoint Server Elevation of Privilege Vulnerability | CVSS9.8v3.1 | EPSS99.6% | PoCs9 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2023-24955HIGH | Microsoft SharePoint Server Remote Code Execution VulnerabilityMicrosoft SharePoint Server Remote Code Execution Vulnerability CWE-94May 9, 2023 | CVSS7.2v3.1 | EPSS85.4% | PoCs3 | SignalsListed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2023-21742HIGH | Microsoft SharePoint Server Remote Code Execution VulnerabilityMicrosoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21744. CWE-284Jan 10, 2023 | CVSS8.8v3.1 | EPSS55.8% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-22005HIGH | Microsoft SharePoint Server Remote Code Execution VulnerabilityMicrosoft SharePoint Server Remote Code Execution Vulnerability. CWE-502Feb 9, 2022 | CVSS8.8v3.1 | EPSS16.8% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2020-1210CRITICAL | Microsoft SharePoint Remote Code Execution VulnerabilityA remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1200, CVE-2020-1452, CVE-2020-1453, CVE-2020-1576, CVE-2020-1595. CWE-494Sep 11, 2020 | CVSS9.9v3.1 | EPSS1.76% | PoCs0 | SignalsNot listed in CISA KEVKnown ransomware useNo Nuclei templates | STIX |
CVE-2019-0604CRITICAL | Microsoft SharePoint Remote Code Execution VulnerabilityA remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0594. | CVSS9.8v3.1 | EPSS99.8% | PoCs6 | SignalsListed in CISA KEVKnown ransomware use1 Nuclei template | STIX |
CVE-2018-8580MEDIUM | Microsoft SharePoint Exposure of Sensitive Information to an Unauthorized ActorAn information disclosure vulnerability exists where certain modes of the search function in Microsoft SharePoint Server are vulnerable to cross-site search attacks (a variant of cross-site request forgery, CSRF), aka "Microsoft SharePoint Information Disclosure Vulnerability." This affects Microsoft SharePoint. CWE-200Dec 12, 2018 | CVSS4.3v3.1 | EPSS4.43% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
Microsoft SharePoint Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')Cross-site scripting (XSS) vulnerability in _layouts/help.aspx in Microsoft SharePoint Server 2007 12.0.0.6421 and possibly earlier, and SharePoint Services 3.0 SP1 and SP2, versions, allows remote attackers to inject arbitrary web script or HTML via the cid0 parameter. CWE-79Apr 29, 2010 | CVSS4.3v2.0 | EPSS28.7% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |