CyberICT

CVE-2025-49706

Microsoft · Published July 8, 2025

CVSS v3.1

MEDIUM
Patch availableGet patch

Description

Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

Affected Products

  • Sharepoint Enterprise Server
  • Sharepoint Server < 16.0.18526.20424
  • Sharepoint Server

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N