cbcvebase.

Microsoft Sharepoint Server vulnerabilities

477 known vulnerabilities affecting microsoft/sharepoint_server.

Total CVEs
477
CISA KEV
14
actively exploited
Public exploits
24
Exploited in wild
13
Severity breakdown
CRITICAL40HIGH238MEDIUM186LOW13

Vulnerabilities

Page 4 of 24
CVE-2025-29793HIGHCVSS 7.2fixed in 16.0.18526.20172v20192025-04-08
CVE-2025-29793 [HIGH] CWE-502 CVE-2025-29793: Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to ex Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
nvd
CVE-2025-29794HIGHCVSS 8.8fixed in 16.0.18526.20172v20192025-04-08
CVE-2025-29794 [HIGH] CWE-285 CVE-2025-29794: Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
nvd
CVE-2025-21400HIGHCVSS 8.0fixed in 16.0.17928.20396v2016+1 more2025-02-11
CVE-2025-21400 [HIGH] CWE-285 CVE-2025-21400: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2025-21348HIGHCVSS 7.2fixed in 16.0.17928.20356v2016+1 more2025-01-14
CVE-2025-21348 [HIGH] CWE-285 CVE-2025-21348: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2025-21344HIGHCVSS 7.8fixed in 16.0.17928.20356v2016+1 more2025-01-14
CVE-2025-21344 [HIGH] CWE-20 CVE-2025-21344: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2025-21393MEDIUMCVSS 6.3fixed in 16.0.17928.20356v2016+1 more2025-01-14
CVE-2025-21393 [MEDIUM] CWE-79 CVE-2025-21393: Microsoft SharePoint Server Spoofing Vulnerability Microsoft SharePoint Server Spoofing Vulnerability
nvd
CVE-2024-49068HIGHCVSS 8.2v2016v20192024-12-12
CVE-2024-49068 [HIGH] CWE-284 CVE-2024-49068: Microsoft SharePoint Elevation of Privilege Vulnerability Microsoft SharePoint Elevation of Privilege Vulnerability
nvd
CVE-2024-49070HIGHCVSS 7.4v2016v20192024-12-12
CVE-2024-49070 [HIGH] CWE-502 CVE-2024-49070: Microsoft SharePoint Remote Code Execution Vulnerability Microsoft SharePoint Remote Code Execution Vulnerability
nvd
CVE-2024-49062MEDIUMCVSS 6.5v2016v20192024-12-12
CVE-2024-49062 [MEDIUM] CWE-23 CVE-2024-49062: Microsoft SharePoint Information Disclosure Vulnerability Microsoft SharePoint Information Disclosure Vulnerability
nvd
CVE-2024-49065MEDIUMCVSS 5.5v2016v20192024-12-12
CVE-2024-49065 [MEDIUM] CWE-125 CVE-2024-49065: Microsoft Office Remote Code Execution Vulnerability Microsoft Office Remote Code Execution Vulnerability
nvd
CVE-2024-49064MEDIUMCVSS 6.5v2016v20192024-12-12
CVE-2024-49064 [MEDIUM] CWE-611 CVE-2024-49064: Microsoft SharePoint Information Disclosure Vulnerability Microsoft SharePoint Information Disclosure Vulnerability
nvd
CVE-2024-43503HIGHCVSS 7.8v2016v20192024-10-08
CVE-2024-43503 [HIGH] CWE-284 CVE-2024-43503: Microsoft SharePoint Elevation of Privilege Vulnerability Microsoft SharePoint Elevation of Privilege Vulnerability
nvd
CVE-2024-38018HIGHCVSS 8.8v2016v20192024-09-10
CVE-2024-38018 [HIGH] CWE-502 CVE-2024-38018: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2024-38227HIGHCVSS 7.2v2016v20192024-09-10
CVE-2024-38227 [HIGH] CWE-77 CVE-2024-38227: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2024-38228HIGHCVSS 7.2v2016v20192024-09-10
CVE-2024-38228 [HIGH] CWE-77 CVE-2024-38228: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2024-43466HIGHCVSS 7.5v2016v20192024-09-10
CVE-2024-43466 [HIGH] CWE-502 CVE-2024-43466: Microsoft SharePoint Server Denial of Service Vulnerability Microsoft SharePoint Server Denial of Service Vulnerability
nvd
CVE-2024-43464HIGHCVSS 7.2v2016v20192024-09-10
CVE-2024-43464 [HIGH] CWE-502 CVE-2024-43464: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2024-38024HIGHCVSS 7.2v2016v20192024-07-09
CVE-2024-38024 [HIGH] CWE-502 CVE-2024-38024: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd
CVE-2024-38094HIGHCVSS 7.2KEVv2016v20192024-07-09
CVE-2024-38094 [HIGH] CWE-502 CVE-2024-38094: Microsoft SharePoint Remote Code Execution Vulnerability Microsoft SharePoint Remote Code Execution Vulnerability
nvd
CVE-2024-38023HIGHCVSS 7.2v2016v20192024-07-09
CVE-2024-38023 [HIGH] CWE-502 CVE-2024-38023: Microsoft SharePoint Server Remote Code Execution Vulnerability Microsoft SharePoint Server Remote Code Execution Vulnerability
nvd