AI description
CVE-2026-50522 is a vulnerability found in Microsoft Office SharePoint, stemming from the deserialization of untrusted data. This flaw enables an unauthorized attacker to execute code remotely over a network. Specifically, an attacker with at least Site Owner authentication could exploit this vulnerability to inject and execute arbitrary code on the SharePoint Server. Affected versions include SharePoint Server 2016, 2019, and subscription editions prior to build 16.0.19725.20434.
- Description
- Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
- Source
- secure@microsoft.com
- NVD status
- Analyzed
- Products
- sharepoint_server
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- secure@microsoft.com
- CWE-502
- Hype score
- Not currently trending
🚨 Two critical vulnerabilities in on-premises Microsoft Office SharePoint Server allow RCE without authentication: CVE-2026-58644 and CVE-2026-50522. ▪️ Affected versions: on-premises editions of Microsoft SharePoint Server: SharePoint Server 2016, SharePoint Server 2019,
@censysio
17 Jul 2026
2708 Impressions
8 Retweets
32 Likes
16 Bookmarks
1 Reply
1 Quote
🔴 ALERTĂ: Vulnerabilități critice în Microsoft SharePoint. CVE-2026-50522 și CVE-2026-58644 (CVSS 9.8) permit execuție de cod la distanță. CVE-2026-58644 este exploatată activ. Detalii: https://t.co/9aM8F68MVH #DNSC #CyberSecurity #SharePoint https://t.co/QguYaw5A9d
@DNSC_RO
17 Jul 2026
222 Impressions
0 Retweets
3 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:sharepoint_server:*:*:*:*:subscription:*:*:*",
"matchCriteriaId": "5FA63EA8-B225-4E35-A6A3-DBDECF5AC4C8",
"versionEndExcluding": "16.0.19725.20434",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:sharepoint_server:2016:*:*:*:enterprise:*:*:*",
"matchCriteriaId": "F815EF1D-7B60-47BE-9AC2-2548F99F10E4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*",
"matchCriteriaId": "6122D014-5BF1-4AF4-8B4D-80205ED7785E",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]