Microsoft Office Sharepoint Server是美国微软(Microsoft)公司的一款为企业客户而设计的、基于web的内容管理和协作工具。该软件初始版本以Office组件形式存在,现在也仍然大大依托于Office,以提供企业门户、文档协同等功能为主,之后版本支持将Office、Exchange、Lync、Project和Visio结合起来。 Microsoft Office SharePoint存在跨站脚本漏洞。攻击者利用该漏洞执行欺骗攻击。以下产品和版本受到影响:Microsof
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft SharePoint Enterprise Server 2016 | 16.0.0< 16.0.5548.1003 |
affected |
| Microsoft | Microsoft SharePoint Server 2019 | 16.0.0< 16.0.10417.20114 |
affected |
| Microsoft | Microsoft SharePoint Server Subscription Edition | 16.0.0< 16.0.19725.20210 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft SharePoint Enterprise Server 2016 | 16.0.0 ~ 16.0.5548.1003 | - |
|
| Microsoft | Microsoft SharePoint Server 2019 | 16.0.0 ~ 16.0.10417.20114 | - |
|
| Microsoft | Microsoft SharePoint Server Subscription Edition | 16.0.0 ~ 16.0.19725.20210 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-33824 | 9.8 CRITICAL | Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability |
| CVE-2026-26149 | 9.0 CRITICAL | Microsoft Power Apps Desktop Client Spoofing Vulnerability |
| CVE-2026-32225 | 8.8 HIGH | Windows Shell Security Feature Bypass Vulnerability |
| CVE-2026-26167 | 8.8 HIGH | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-32157 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-33120 | 8.8 HIGH | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-32171 | 8.8 HIGH | Azure Logic Apps Elevation of Privilege Vulnerability |
| CVE-2026-26178 | 8.8 HIGH | Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability |
| CVE-2026-27928 | 8.7 HIGH | Windows Hello Security Feature Bypass Vulnerability |
| CVE-2026-32221 | 8.4 HIGH | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-32091 | 8.4 HIGH | Microsoft Brokering File System Elevation of Privilege Vulnerability |
| CVE-2026-32162 | 8.4 HIGH | Windows COM Elevation of Privilege Vulnerability |
| CVE-2026-33115 | 8.4 HIGH | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-33114 | 8.4 HIGH | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-32190 | 8.4 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-33827 | 8.1 HIGH | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2026-27912 | 8.0 HIGH | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2026-33826 | 8.0 HIGH | Windows Active Directory Remote Code Execution Vulnerability |
| CVE-2026-33098 | 7.8 HIGH | Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability |
| CVE-2026-23657 | 7.8 HIGH | Microsoft Word Remote Code Execution Vulnerability |
Showing top 20 of 163 CVEs. View all on vendor page → →
No comments yet