Impact
The vulnerability is a server‑side request forgery (SSRF) in Microsoft SharePoint that allows an authenticated attacker to instruct the server to send requests to internal endpoints. By exploiting this flaw, the attacker can elevate their privileges within the SharePoint environment, potentially gaining full control over the affected SharePoint instance. The weakness is categorised as CWE‑918, indicating that the server trusts user input and can be directed to external or internal resources without proper validation.
Affected Systems
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019 and the SharePoint Server Subscription Edition are the products affected by this vulnerability. Specific version numbers are not listed, so any installation of these products should be evaluated against the available patch set.
Risk and Exploitability
The CVSS score of 8.8 classifies this issue as high severity. The EPSS score is less than 1 %, implying that the probability of this vulnerability being actively exploited in the wild is currently low, and it is not present in the CISA KEV catalog. The likely attack vector requires an attacker to have valid SharePoint credentials – an authorized user who can trigger the SSRF by submitting a crafted request. From there, the server can be coaxed into reaching internal addresses, allowing the attacker to perform privileged actions that they would not normally be able to execute.
OpenCVE Enrichment