First published: Tue Jan 14 2025(Updated: )
Microsoft SharePoint Server Remote Code Execution Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft SharePoint Enterprise Server 2016 | ||
Microsoft SharePoint Server Subscription Edition | ||
Microsoft SharePoint Server 2019 | ||
Microsoft SharePoint Server | <16.0.17928.20356 | |
Microsoft SharePoint Server | =2016 | |
Microsoft SharePoint Server | =2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-21348 has a critical severity rating due to its potential for remote code execution.
To fix CVE-2025-21348, apply the available security patches from Microsoft relevant to your SharePoint version.
CVE-2025-21348 affects Microsoft SharePoint Server 2016, 2019, and Subscription Edition.
CVE-2025-21348 is classified as a remote code execution vulnerability.
The potential impacts of CVE-2025-21348 include unauthorized access and execution of arbitrary code on affected systems.