CVE-2025-53771
Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
Alerte précoce : exploitation observée
- Exploitation observée depuis le 18 juil. 2025
- Pas encore dans le catalogue officiel de la CISA
- Attaquée 3 jours avant la divulgation publique de la faille
- Utilisée dans des campagnes de rançongiciel
Source : VulnCheck KEV · 1 oct. 2026 16 sept. 2026 1 juil. 2026 3 juin 2026 24 mai 2026 18 avr. 2026
Score CVSS6.5 / 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:NType de faiblesse (CWE)CWE-287
Éditeursmicrosoft
Produits concernés
| Éditeurs | Produit | Versions |
|---|---|---|
| microsoft | sharepoint server | < 16.0.18526.20508 |
Articles liés
This product uses the NVD API but is not endorsed or certified by the NVD.
