CVE-2025-53771
- EPSS 44.97%
- Veröffentlicht 20.07.2025 22:16:52
- Zuletzt bearbeitet 14.08.2025 17:29:05
Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
CVE-2025-53770
- EPSS 88.18%
- Veröffentlicht 20.07.2025 01:15:30
- Zuletzt bearbeitet 27.10.2025 17:12:40
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully te...
CVE-2025-49706
- EPSS 74.99%
- Veröffentlicht 08.07.2025 16:58:07
- Zuletzt bearbeitet 27.10.2025 17:12:29
Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
CVE-2025-49703
- EPSS 1.11%
- Veröffentlicht 08.07.2025 16:58:05
- Zuletzt bearbeitet 16.07.2025 17:40:06
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-49704
- EPSS 59.58%
- Veröffentlicht 08.07.2025 16:58:05
- Zuletzt bearbeitet 27.10.2025 17:12:33
Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2025-49701
- EPSS 1.82%
- Veröffentlicht 08.07.2025 16:58:04
- Zuletzt bearbeitet 15.07.2025 17:07:45
Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2025-47172
- EPSS 4.31%
- Veröffentlicht 10.06.2025 17:02:41
- Zuletzt bearbeitet 09.07.2025 13:25:03
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2025-47168
- EPSS 0.76%
- Veröffentlicht 10.06.2025 17:02:39
- Zuletzt bearbeitet 09.07.2025 14:06:45
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-47169
- EPSS 0.76%
- Veröffentlicht 10.06.2025 17:02:39
- Zuletzt bearbeitet 09.07.2025 13:22:51
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-47166
- EPSS 11.46%
- Veröffentlicht 10.06.2025 17:02:38
- Zuletzt bearbeitet 09.07.2025 14:02:40
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.