You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
sharepoint 2016
About this tag
SharePoint 2016 is an on-premises collaboration platform from Microsoft that remains in active use across many organizations. Recent discussions on WindowsForum.com focus on critical security updates and vulnerabilities affecting SharePoint Server 2016, including CVE-2026-33110, CVE-2025-53770, and CVE-2025-47172. These threads highlight the importance of applying the correct KB updates even when product naming differs between SharePoint Server and SharePoint Enterprise Server, and address SQL injection and remote code execution risks. Administrators are advised to treat label mismatches seriously and patch promptly to protect their farms from zero-day attacks and other exploits targeting government and enterprise environments.
Microsoft’s guidance for CVE-2026-33110 says SharePoint Server 2016 customers should install the same security update listed for SharePoint Enterprise Server 2016, because the KB applies to both product names and protects both supported 2016 deployments from the remote code execution flaw. That...
Urgent Cybersecurity Alert: Tens of thousands of on-premises Microsoft SharePoint servers worldwide have been hit by a massive zero-day cyberattack, targeting major US government agencies and energy firms.
CVE-2025-47172 is a critical vulnerability in Microsoft SharePoint Server that allows authorized attackers to execute arbitrary code over a network due to improper neutralization of special elements used in SQL commands, commonly known as SQL injection. This vulnerability affects multiple...