Microsoft SharePoint Server Vulnerability
Microsoft SharePoint contains a missing authentication for critical function vulnerability that allows an unauthorized attacker to elevate privileges over a network.
CVSS Score
9.8
CRITICAL
Published
14 Jul 2026 00:00
Modified
N/A
Vendor
Microsoft
Product
SharePoint Server
Source
CIRCL
Affected Versions
Fix
Vendor Patch / Mitigation Available
Weaknesses (CWE)
CWE-306
Affected Systems
Microsoft
SharePoint Server
Microsoft
Windows Ancillary Function Driver For WinSock
SharePoint
Active Directory Federation Services
SharePoint Server
Windows
DirectX
Internet Explorer
Defender
Microsoft
Office
Visual Basic For Applications (VBA)
External Links
KEV Status
Known Exploited Vulnerability