Description
Missing authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

Missing authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. The flaw is a classic Missing Authorization issue (CWE-862), enabling attackers who can authenticate to the SharePoint application to run arbitrary code beyond the intended scope, potentially compromising the entire server or any connected services.

Affected Systems

The vulnerability affects Microsoft SharePoint Server Subscription Edition. No specific version range is provided in the CNA data, implying that all current releases of this product are potentially impacted until a patch is applied.

Risk and Exploitability

The CVSS score of 8.8 indicates a high severity, while the EPSS score is not available, making it unclear how frequently it is exploited. The vulnerability is not listed in CISA’s KEV catalog, so there is no evidence of widespread exploitation yet. The likely attack vector is network‑based; an attacker must first authenticate to the SharePoint system with sufficient privileges, after which they can trigger arbitrary code execution through the missing authorization control.

Generated by OpenCVE AI on September 8, 2026 at 21:56 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Download and apply the latest SharePoint Server security update that addresses CVE-2026-69465 from Microsoft Update Catalog.
  • Reconfigure SharePoint permissions to enforce least privilege, ensuring only users who need to modify site content or settings have elevated rights.
  • Restrict network exposure of the SharePoint server by firewall rules that limit inbound traffic to required ports and disable any unused management endpoints.

Generated by OpenCVE AI on September 8, 2026 at 21:56 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Missing authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Title Microsoft Office SharePoint Remote Code Execution Vulnerability
First Time appeared Microsoft
Microsoft sharepoint Server
Weaknesses CWE-862
CPEs cpe:2.3:a:microsoft:sharepoint_server:*:*:*:*:subscription:*:*:*
Vendors & Products Microsoft
Microsoft sharepoint Server
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Sharepoint Server
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:37:35.737Z

Reserved: 2026-08-03T21:03:33.032Z

Link: CVE-2026-69465

cve-icon Vulnrichment

Updated: 2026-09-09T09:54:02.740Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:19:11.693

Modified: 2026-09-09T17:18:01.803

Link: CVE-2026-69465

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-09T08:00:08Z

Weaknesses