CVE-2026-32201: Microsoft SharePoint Server Improper Input Validation Vulnerability
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
Other sources
Microsoft SharePoint Server contains an improper input validation vulnerability that allows an unauthorized attacker to perform spoofing over a network.
— CISA
Microsoft SharePoint Server Spoofing Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.5548.1003Patch KB5002861 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.19725.20210Patch KB5002853 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.10417.20114Patch KB5002854
Event History
Frequently Asked Questions
What is the severity of CVE-2026-32201?
CVE-2026-32201 is classified as a high severity vulnerability due to its potential for unauthorized access and spoofing attacks.
How do I fix CVE-2026-32201?
To fix CVE-2026-32201, apply the latest security update provided by Microsoft for your affected SharePoint Server version.
What products are affected by CVE-2026-32201?
CVE-2026-32201 affects Microsoft SharePoint Server 2019, SharePoint Enterprise Server 2016, and SharePoint Server Subscription Edition.
Can CVE-2026-32201 lead to data theft?
Yes, CVE-2026-32201 can potentially lead to data theft through unauthorized network access caused by the input validation flaw.
How can I identify if my system is vulnerable to CVE-2026-32201?
You can identify if your system is vulnerable to CVE-2026-32201 by checking the software version of your SharePoint Server against the affected versions listed in the release notes.