CVE-2025-53770
20.07.2025, 01:15
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, please make sure that the mitigation provided in this CVE documentation is in place so that you are protected from exploitation.Enginsight
| Vendor | Product | Version |
|---|---|---|
| microsoft | sharepoint_server | 𝑥 < 16.0.18526.20508 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References