Description
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:NExploitability: 2.8 | Impact: 4.2Attack Vector: Network
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: Low
Availability: None
Affected Packages4 packages
🔴Vulnerability Details
2CVEListMicrosoft SharePoint Elevation of Privilege Vulnerability↗2025-08-12 ▶ GHSAGHSA-hh67-c3gq-cxc2: Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network↗2025-08-12 ▶ 📋Vendor Advisories
1MicrosoftMicrosoft SharePoint Elevation of Privilege Vulnerability↗2025-08-12 ▶