You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-53771
About this tag
CVE-2025-53771 is a critical vulnerability affecting on-premises Microsoft SharePoint Server, allowing spoofing attacks. It is part of a set of actively exploited vulnerabilities, including CVE-2025-53770, collectively referred to as ToolShell. Microsoft has issued an urgent security patch to address these flaws, which do not impact SharePoint Online in Microsoft 365. Discussions on WindowsForum highlight the need for immediate patching to prevent unauthenticated remote code execution and spoofing. The tag covers patch guidance, exploitation details, and mitigation steps for enterprise IT administrators managing SharePoint Server environments.
The identifier CVE-2025-49712 does not appear in any public, authoritative advisory or vulnerability database at this time; the single URL you supplied resolves to Microsoft’s update guide infrastructure but returns no accessible content without JavaScript, and independent searches for...
Microsoft has recently issued an urgent security patch in response to active attacks targeting on-premises SharePoint Server installations. These attacks exploit critical vulnerabilities, specifically CVE-2025-53770 and CVE-2025-53771, which allow unauthenticated remote code execution and...