CVE-2026-64900
- EPSS 0.36%
- Veröffentlicht 11.08.2026 17:06:35
- Zuletzt bearbeitet 19.08.2026 15:17:44
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-64902
- EPSS 0.34%
- Veröffentlicht 11.08.2026 17:06:35
- Zuletzt bearbeitet 11.08.2026 20:54:29
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-64897
- EPSS 0.34%
- Veröffentlicht 11.08.2026 17:06:34
- Zuletzt bearbeitet 11.08.2026 20:56:13
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-70355
- EPSS 0.46%
- Veröffentlicht 11.08.2026 17:05:39
- Zuletzt bearbeitet 13.08.2026 13:50:09
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-70324
- EPSS 0.7%
- Veröffentlicht 11.08.2026 17:05:28
- Zuletzt bearbeitet 13.08.2026 13:48:16
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-70321
- EPSS 1.25%
- Veröffentlicht 11.08.2026 17:05:23
- Zuletzt bearbeitet 13.08.2026 13:47:40
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-65665
- EPSS 1.73%
- Veröffentlicht 11.08.2026 17:04:56
- Zuletzt bearbeitet 13.08.2026 13:36:00
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-65660
- EPSS 0.74%
- Veröffentlicht 11.08.2026 17:04:55
- Zuletzt bearbeitet 13.08.2026 13:39:50
Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-65663
- EPSS 1.39%
- Veröffentlicht 11.08.2026 17:04:55
- Zuletzt bearbeitet 13.08.2026 13:35:35
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-65658
- EPSS 1.39%
- Veröffentlicht 11.08.2026 17:04:53
- Zuletzt bearbeitet 13.08.2026 13:36:48
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.