CVE-2026-58639
6.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
Summary
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft SharePoint Enterprise Server 2016 | 16.0.0 < 16.0.5565.1001 | affected |
| Microsoft | Microsoft SharePoint Server 2019 | 16.0.0 < 16.0.10417.20198 | affected |
| Microsoft | Microsoft SharePoint Server Subscription Edition | 16.0.0 < 16.0.19725.20522 | affected |
Weaknesses
- CWE-918: CWE-918: Server-Side Request Forgery (SSRF)
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.