CVE-2026-64902
- EPSS 0.34%
- Veröffentlicht 11.08.2026 17:06:35
- Zuletzt bearbeitet 11.08.2026 20:54:29
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-64897
- EPSS 0.34%
- Veröffentlicht 11.08.2026 17:06:34
- Zuletzt bearbeitet 11.08.2026 20:56:13
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-70324
- EPSS 0.7%
- Veröffentlicht 11.08.2026 17:05:28
- Zuletzt bearbeitet 13.08.2026 13:48:16
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-65660
- EPSS 0.74%
- Veröffentlicht 11.08.2026 17:04:55
- Zuletzt bearbeitet 13.08.2026 13:39:50
Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-65663
- EPSS 1.39%
- Veröffentlicht 11.08.2026 17:04:55
- Zuletzt bearbeitet 13.08.2026 13:35:35
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-65658
- EPSS 1.39%
- Veröffentlicht 11.08.2026 17:04:53
- Zuletzt bearbeitet 13.08.2026 13:36:48
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-64922
- EPSS 0.41%
- Veröffentlicht 11.08.2026 17:04:50
- Zuletzt bearbeitet 13.08.2026 13:37:16
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-63520
- EPSS 1.3%
- Veröffentlicht 11.08.2026 17:03:31
- Zuletzt bearbeitet 13.08.2026 13:38:30
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
CVE-2026-63512
- EPSS 0.48%
- Veröffentlicht 11.08.2026 17:03:30
- Zuletzt bearbeitet 12.08.2026 15:18:06
Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.
CVE-2026-63516
- EPSS 1.24%
- Veröffentlicht 11.08.2026 17:03:30
- Zuletzt bearbeitet 12.08.2026 15:18:07
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.