VYPR

Office SharePoint

by Microsoft

CVEs (233)

  • CVE-2024-30044HigMay 14, 2024
    risk 0.54cvss 7.2epss 0.84

    Microsoft SharePoint Server Remote Code Execution Vulnerability

  • CVE-2022-21837HigJan 11, 2022
    risk 0.54cvss 8.3epss 0.03

    Microsoft SharePoint Server Remote Code Execution Vulnerability

  • CVE-2026-63520HigAug 11, 2026
    risk 0.53cvss 8.1epss 0.03

    Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

  • CVE-2026-26105HigMar 10, 2026
    risk 0.53cvss 8.1epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2025-53771MedJul 20, 2025
    risk 0.53cvss 6.5epss 1.00

    Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2024-49068HigDec 12, 2024
    risk 0.53cvss 8.2epss 0.02

    Microsoft SharePoint Elevation of Privilege Vulnerability

  • CVE-2020-17118HigDec 10, 2020
    risk 0.53cvss 8.1epss 0.04

    Microsoft SharePoint Remote Code Execution Vulnerability

  • CVE-2026-57105HigAug 11, 2026
    risk 0.52cvss 8.0epss 0.01

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-47298HigJun 9, 2026
    risk 0.52cvss 8.0epss 0.01

    Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

  • CVE-2026-47294HigJun 1, 2026
    risk 0.52cvss 8.0epss 0.01

    Improper neutralization of special elements used in an os command ('os command injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

  • CVE-2026-40368HigMay 12, 2026
    risk 0.52cvss 8.0epss 0.02

    Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

  • CVE-2025-62204HigNov 11, 2025
    risk 0.52cvss 8.0epss 0.02

    Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

  • CVE-2023-36892HigAug 8, 2023
    risk 0.52cvss 8.0epss 0.02

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2023-36891HigAug 8, 2023
    risk 0.52cvss 8.0epss 0.02

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2022-24472HigApr 15, 2022
    risk 0.52cvss 8.0epss 0.02

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2022-21987HigFeb 9, 2022
    risk 0.52cvss 8.0epss 0.02

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2020-17115HigDec 10, 2020
    risk 0.52cvss 8.0epss 0.02

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2018-8628HigDec 12, 2018
    risk 0.52cvss 7.8epss 0.15

    A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Microsoft Office, Office 365 ProPlus, Microsoft PowerPoint,…

  • CVE-2018-8161HigMay 9, 2018
    risk 0.52cvss 7.8epss 0.20

    A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability." This affects Microsoft Word, Word, Microsoft Office, Microsoft SharePoint. This CVE…

  • CVE-2026-20951HigJan 13, 2026
    risk 0.51cvss 7.8epss 0.01

    Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.

Page 5 of 12