Executive brief
Microsoft Office SharePoint is a document management and collaboration platform used widely across enterprises to store and share files. An authorization bypass flaw allows an authenticated attacker to execute arbitrary code remotely on SharePoint servers, potentially compromising all hosted data and enabling lateral movement within the organization.
Technical details
The vulnerability is a missing authorization check in Microsoft Office SharePoint that fails to properly validate user permissions before executing certain operations. An authenticated attacker with valid SharePoint credentials can exploit this flaw to execute arbitrary code on the affected server via network communication. The attack requires prior authentication but does not need any user interaction or elevated privileges. An attacker can achieve remote code execution, leading to complete server compromise, data theft, and potential lateral movement within the network. Microsoft has released patches for this vulnerability; users should apply security updates immediately.
Affected products
- Microsoft Office SharePoint
Timeline
- 2026-09-08: disclosed