cbcvebase.
CVE-2025-30384
published 2025-05-13

CVE-2025-30384: Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.

high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.

Affected

9 ranges
VendorProductVersion rangeFixed in
microsoftmicrosoft_sharepoint_enterprise_server_2016>= 16.0.0 < 16.0.5500.100116.0.5500.1001
microsoftmicrosoft_sharepoint_server_2019>= 16.0.0 < 16.0.10417.2001016.0.10417.20010
microsoftmicrosoft_sharepoint_server_subscription_edition>= 16.0.0 < 16.0.18526.2028616.0.18526.20286
microsoftsharepoint_server< 16.0.18526.2028616.0.18526.20286
microsoftsharepoint_server
microsoftsharepoint_server
msrcmicrosoft_sharepoint_enterprise_server_2016
msrcmicrosoft_sharepoint_server_2019
msrcmicrosoft_sharepoint_server_subscription_edition