VendorsMicrosoftsharepoint_serverall versions
Vulnerabilities

Microsoft Sharepoint Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

604CVEs
CVE-2026-48560
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.011
CVE-2026-45453
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.006
CVE-2026-45464
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.006
CVE-2026-45465
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.006
CVE-2026-47636
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.006
CVE-2026-47639
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.006
CVE-2026-45462
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-45467
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-45468
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-45479
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-45483
Microsoft Office Project Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-47637
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-47638
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-47640
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
5.4EPSS 0.006
CVE-2026-47641
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Modified
5.4EPSS 0.006
CVE-2026-55016
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-14 · Analyzed
5.4EPSS 0.006
CVE-2026-55019
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-14 · Analyzed
5.4EPSS 0.006
CVE-2026-55020
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-14 · Analyzed
5.4EPSS 0.006
CVE-2026-55030
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-14 · Analyzed
5.4EPSS 0.006
CVE-2026-55135
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-14 · Analyzed
5.4EPSS 0.006
CVE-2026-62826
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-16 · Analyzed
5.4EPSS 0.006
CVE-2026-64897
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-08-11 · Analyzed
5.4EPSS 0.006
CVE-2026-64902
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-08-11 · Analyzed
5.4EPSS 0.006
CVE-2026-64916
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-08-11 · Analyzed
5.4EPSS 0.006
CVE-2026-64922
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-08-11 · Analyzed
5.4EPSS 0.006
CVE-2026-56157
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-07-14 · Analyzed
5.4EPSS 0.005
CVE-2026-62829
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-08-11 · Analyzed
5.4EPSS 0.005
CVE-2026-69690
Microsoft Office SharePoint Spoofing Vulnerability
Published 2026-09-08 · Analyzed
5.4EPSS 0.004
CVE-2026-20958
Microsoft SharePoint Information Disclosure Vulnerability
Published 2026-01-13 · Analyzed
5.4EPSS 0.003
CVE-2021-34519
Microsoft SharePoint Server Information Disclosure Vulnerability
Published 2021-07-14 · Modified
5.3EPSS 0.061
CVE-2021-34517
Microsoft SharePoint Server Spoofing Vulnerability
Published 2021-07-14 · Modified
5.3EPSS 0.020
CVE-2023-21743
Microsoft SharePoint Server Security Feature Bypass Vulnerability
Published 2023-01-10 · Modified
5.3EPSS 0.011
CVE-2024-33880
An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. It discloses full pathnames via Virto.SharePoint.FileDownloader/Api/Download.ashx?action=archive.
Published 2024-06-24 · Modified
5.3EPSS 0.003
CVE-2013-0081
Microsoft SharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 do not properly process unassigned workflows, which allows remote attackers to cause a denial of service (W3WP process hang) via a crafted URL, aka "SharePoint Denial of Service Vulnerability."
Published 2013-09-11 · Modified
5.0EPSS 0.767
CVE-2009-3830
The download functionality in Team Services in Microsoft Office SharePoint Server 2007 12.0.0.4518 and 12.0.0.6219 allows remote attackers to read ASP.NET source code via pathnames in the SourceUrl and Source parameters to _layouts/download.aspx.
Published 2009-10-30 · Modified
5.01 PoCEPSS 0.326
CVE-2013-0086
Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive information via a crafted OneNote file, aka "Buffer Size Validation Vulnerability."
Published 2013-03-13 · Modified
5.0EPSS 0.240
CVE-2020-1205
Microsoft SharePoint Spoofing Vulnerability
Published 2020-09-11 · Modified
4.9EPSS 0.018
CVE-2026-69615
Microsoft Office SharePoint Spoofing Vulnerability
Published 2026-09-08 · Analyzed
4.8EPSS 0.004
CVE-2017-0027
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, and Excel Services on SharePoint Server 2013 SP1 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."
Published 2017-03-17 · Modified
4.7EPSS 0.226
CVE-2026-48562
Microsoft SharePoint Server Spoofing Vulnerability
Published 2026-06-09 · Analyzed
4.6EPSS 0.006
← Prev14 / 16Next →