VulnSea

sharepoint_server_2019 vulnerabilities

CVEs whose affected-version data names the sharepoint_server_2019 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

66 CVEsRSS

CVE-2026-70324High· 8.8
1mo ago

Microsoft SharePoint Elevation of Privilege Vulnerability

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.70%via CVEORG
CVE-2026-70355High· 7.3
1mo ago

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Microsoft SharePoint Server 2019EPSS 0.46%via CVEORG
CVE-2026-70306Critical· 9.3
1mo ago

Microsoft Office SharePoint Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

MidnightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.75%via CVEORG
CVE-2026-63520High· 8.1PoC
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

MidnightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 2.9%via CVEORG
CVE-2026-63516Medium· 6.5
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.3%via CVEORG
CVE-2026-63514High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.5%via CVEORG
CVE-2026-63512Medium· 6.5
1mo ago

Microsoft SharePoint Server Tampering Vulnerability

Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.55%via CVEORG
CVE-2026-62837Medium· 6.5
1mo ago

Microsoft SharePoint Server Information Disclosure Vulnerability

Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.86%via CVEORG
CVE-2026-62829Medium· 4.6
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Server 2019EPSS 0.36%via CVEORG
CVE-2026-62827High· 8.8
1mo ago

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.73%via CVEORG
CVE-2026-57105High· 8.0
1mo ago

Microsoft Office SharePoint Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

TwilightMicrosoft · Microsoft SharePoint Server 2019EPSS 0.58%via CVEORG
CVE-2026-65660High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.81%via CVEORG
CVE-2026-65658High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.4%via CVEORG
CVE-2026-64922Medium· 4.6
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.41%via CVEORG
CVE-2026-65665High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Server 2019EPSS 2.8%via CVEORG
CVE-2026-65663High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.4%via CVEORG
CVE-2026-64902Medium· 4.6
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.41%via CVEORG
CVE-2026-64897Medium· 4.6
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.41%via CVEORG
CVE-2026-64921High· 8.8
1mo ago

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.00%via CVEORG
CVE-2026-64916Medium· 4.6
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.41%via CVEORG
CVE-2026-64901High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.9%via CVEORG
CVE-2026-64900High· 7.3
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.45%via CVEORG
CVE-2026-66808High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.1%via CVEORG
CVE-2026-66805High· 8.8
1mo ago

Microsoft SharePoint Server Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.5%via CVEORG
CVE-2026-62917Medium· 4.6
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.44%via CVEORG
CVE-2026-62839Medium· 6.5
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Insufficiently protected credentials in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.63%via CVEORG
CVE-2026-58639Medium· 6.5
1mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.83%via CVEORG
CVE-2026-62826Medium· 4.6
2mo ago

Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 0.58%via CVEORG
CVE-2026-54108Medium· 6.5
2mo ago

Microsoft SharePoint Server Spoofing Vulnerability

External control of file name or path in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

SunlitMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.1%via CVEORG
CVE-2026-56164Medium· 5.3CISA KEV0dayPoC
2mo ago

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network.

MidnightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 27%via CVEORG
sharepoint_server_2019 vulnerabilities (CVEs) · VulnSea