VYPR

Office SharePoint

by Microsoft

CVEs (233)

  • CVE-2026-47637MedJun 9, 2026
    risk 0.30cvss 4.6epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-45479MedJun 9, 2026
    risk 0.30cvss 4.6epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-45468MedJun 9, 2026
    risk 0.30cvss 4.6epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-45467MedJun 9, 2026
    risk 0.30cvss 4.6epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-45462MedJun 9, 2026
    risk 0.30cvss 4.6epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-20959MedJan 13, 2026
    risk 0.30cvss 4.6epss 0.07

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2023-33165MedJul 11, 2023
    risk 0.28cvss 4.3epss 0.01

    Microsoft SharePoint Server Security Feature Bypass Vulnerability

  • CVE-2022-21968MedFeb 9, 2022
    risk 0.28cvss 4.3epss 0.02

    Microsoft SharePoint Server Security Feature Bypass Vulnerability

  • CVE-2018-8580MedDec 12, 2018
    risk 0.28cvss 4.3epss 0.04

    An information disclosure vulnerability exists where certain modes of the search function in Microsoft SharePoint Server are vulnerable to cross-site search attacks (a variant of cross-site request forgery, CSRF), aka "Microsoft SharePoint Information Disclosure Vulnerability."…

  • CVE-2018-8578MedNov 14, 2018
    risk 0.28cvss 4.3epss 0.06

    An information disclosure vulnerability exists when Microsoft SharePoint Server improperly discloses its folder structure when rendering specific web pages, aka "Microsoft SharePoint Information Disclosure Vulnerability." This affects Microsoft SharePoint.

  • CVE-2023-23395LowMar 14, 2023
    risk 0.20cvss 3.1epss 0.01

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2026-56164MedKEVJul 14, 2026
    risk 0.14cvss 5.3epss 0.27

    Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-58644CriKEVJul 14, 2026
    risk 0.12cvss 9.8epss 0.16

    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

Page 12 of 12