A logged-in SharePoint user with only basic privileges can send a crafted request that triggers code execution on the server, and attackers are already doing this.
Posts tagged: Microsoft
Microsoft Windows Heap-Based Buffer Overflow Vulnerability
A heap overflow in Windows ALPC lets a local attacker with basic access escalate to SYSTEM privileges, and it’s already being exploited in the wild.
Microsoft Windows Link Following Vulnerability
A local privilege escalation bug in the Windows Update Stack lets a logged-in low-privilege user redirect a file operation via a symbolic link to gain full SYSTEM control, and it’s already being exploited.
Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
A maximum-severity flaw in Microsoft Entra ID lets an attacker execute code over the network with no credentials or user interaction, and it is already being exploited.
Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability
A double-free bug in Windows’ IKE Extension lets an unauthenticated attacker execute code over the network on any host with IPsec listening, and it’s already being exploited.
Microsoft SharePoint Weak Authentication Vulnerability
An unauthenticated attacker with network access to Microsoft Office SharePoint can bypass authentication controls and read data that should be protected, no login or user action needed.
Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
A kernel-level flaw in Windows’ WinSock driver lets an attacker who already has a foothold on a machine escalate to full SYSTEM control, and it’s already being exploited.