Description
Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

The vulnerability stems from improper access control within Microsoft SharePoint, allowing an authorized attacker to execute code over the network. This flaw enables a malicious user who already has legitimate access to the system to run arbitrary code, potentially compromising the confidentiality, integrity, and availability of the SharePoint environment.

Affected Systems

Microsoft SharePoint Server Subscription Edition is the sole documented product impacted. No specific version information is supplied in the available data, so any installation of this product should be considered at risk if unpatched.

Risk and Exploitability

The vulnerability scores 8.8 on the CVSS scale, indicating a high severity condition. The EPSS score is not available, and it is currently not listed in the CISA KEV catalog. Attackers would need network access to the SharePoint server and must possess authorized credentials to trigger the payload. Given the lack of publicly disclosed exploits, the likelihood of immediate exploitation may be moderate, but the potential impact warrants prompt action.

Generated by OpenCVE AI on September 8, 2026 at 21:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Microsoft SharePoint Server update that addresses CVE-2026-69268, as detailed in the Microsoft Security Update Guide for this CVE.
  • Limit network exposure by restricting SharePoint server access to trusted internal networks or VPN connections only.
  • Enforce least‑privilege principles on user accounts that interact with SharePoint, removing any unnecessary administrative or permission grants.
  • Monitor SharePoint logs for anomalous execution or activity patterns and investigate any suspicious events promptly.

Generated by OpenCVE AI on September 8, 2026 at 21:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Title Microsoft Office SharePoint Remote Code Execution Vulnerability
First Time appeared Microsoft
Microsoft sharepoint Server
Weaknesses CWE-284
CPEs cpe:2.3:a:microsoft:sharepoint_server:*:*:*:*:subscription:*:*:*
Vendors & Products Microsoft
Microsoft sharepoint Server
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Sharepoint Server
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:33:27.300Z

Reserved: 2026-08-03T20:44:03.596Z

Link: CVE-2026-69268

cve-icon Vulnrichment

Updated: 2026-09-09T10:00:47.771Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:18:39.087

Modified: 2026-09-09T17:25:33.380

Link: CVE-2026-69268

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-09T00:45:17Z

Weaknesses