Sceawere

Vulnerability Detail

CVE-2026-58639UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV

Microsoft Office SharePoint SSRF Vulnerability

Vulnerability Metadata

Severity
Medium
Score / CVSS
6.5
Creation Date
7h ago
Vendor
Microsoft
Product
Microsoft SharePoint Enterprise Server 2016
Attack Type
CWE-918: Server-Side Request Forgery (SSRF)
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack Complexity
LOW

Narrative and Response

Description

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

Executive Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Executive Summary Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Technical Details

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Detailed Technical Analysis Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Mitigations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Remediation & Mitigations Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

References

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Intelligence References Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Additional Metadata

{
  "score": "6.5",
  "pubDate": "2026-08-11T17:18:05.137Z",
  "pubdate": "2026-08-11T17:18:05.137Z",
  "executiveSummary": "A Server-Side Request Forgery (SSRF) vulnerability exists in Microsoft Office SharePoint, allowing an authorized attacker to execute spoofing attacks over a network.\nThe vulnerability exposes affected Microsoft Office SharePoint deployments to unauthorized interactions with internal or external resources via the server infrastructure.\nAn attacker leveraging this flaw can induce the vulnerable server to dispatch crafted HTTP requests to arbitrary destinations, potentially bypassing network boundary controls.\nExploitation requires authorization within the network and the ability to interact with the vulnerable component.\nThe primary risk implication involves network-based spoofing and unauthorized information disclosure or interaction facilitated by the SharePoint server.",
  "technicalDetails": "The vulnerability stems from improper validation of user-supplied URLs or input parameters within Microsoft Office SharePoint, which processes backend requests to external or internal endpoints.\nAn authenticated attacker initiates the attack flow by submitting a maliciously crafted request containing a targeted URI to the vulnerable SharePoint component.\nUpon receiving the input, the server fails to adequately sanitize or restrict the destination parameters before executing the outbound network connection.\nConsequently, the SharePoint server acts as a proxy, issuing requests on behalf of the attacker to arbitrary network locations over supported protocols.\nThe attack requires network access and specific authorization to interact with the vulnerable SharePoint interface, allowing the attacker to leverage the trust boundary of the server.\nPost-exploitation impact includes the potential to pivot into internal network segments, query metadata services, or perform spoofing attacks against connected infrastructure."
}
CVE-2026-58639: Microsoft Office SharePoint SSRF Vulnerability (MEDIUM Severity, CVSS: 6.5) - Sceawere