First published: Tue Apr 08 2025(Updated: )
<p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft SharePoint Enterprise Server | ||
Microsoft SharePoint Server Subscription Edition | ||
Microsoft SharePoint Server 2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-29793 has been classified with a high severity rating due to its potential for code execution by unauthorized attackers.
To fix CVE-2025-29793, you should apply the security patches provided by Microsoft for affected SharePoint products.
CVE-2025-29793 affects Microsoft SharePoint Enterprise Server 2016, SharePoint Server 2019, and SharePoint Server Subscription Edition.
CVE-2025-29793 allows authorized attackers to execute arbitrary code over a network due to deserialization of untrusted data.
Yes, an attacker must have authorized access to exploit CVE-2025-29793, making it a targeted vulnerability.