⌁ CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE

September 22, 2026

SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE Swati KhandelwalSep 22, 2026Vulnerability / Web Security A SharePoint Server vulnerability that Microsoft initially classified as a spoofing flaw with a CVSS score of 6.5 actually enables authenticated remote code execution, according to full technical details published today by Viettel Cyber Security researcher Dinh Ho Anh Khoa. The flaw, CVE-2026-65660, affects SharePoint Server 2016, 2019, and Subscription Edition. Patches have been available since the August 11 security updates, and the National Vulnerability Database scores it 8.8. Microsoft's advisory describes CVE-2026-65660 as allowing an authorized attacker to perform spoofing and assigns no impact to integrity or availability. The CVE record that Microsoft publishes separately, updated on September 11, titles the…

CVEs: CVE-2026-65660, CVE-2026-55040