Impact
The vulnerability in Microsoft SharePoint Server arises from credentials that are insufficiently protected, enabling an authorized attacker to perform spoofing over the network. The primary impact is that the attacker can impersonate a legitimate user or service, leading to unauthorized access or manipulation of SharePoint data. The weakness corresponds to CWE-522, which relates to insufficient protection of credentials.
Affected Systems
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, and Microsoft SharePoint Server Subscription Edition are affected. Detailed version information beyond these product lines is not provided.
Risk and Exploitability
With a CVSS score of 6.5, the vulnerability is considered moderate. The EPSS score of less than 1% indicates a low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. The likely attack vector is an internal network scenario where an authorized user’s credentials are exposed; this inference is based on the description. Because the attacker must already be authorized, the exploitability depends on the depth of existing privileges.
OpenCVE Enrichment