CVE-2025-53770
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-07-20

Last updated on: 2025-10-27

Assigner: Microsoft Corporation

Description
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, please make sure that the mitigation provided in this CVE documentation is in place so that you are protected from exploitation.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-07-20
Last Modified
2025-10-27
Generated
2026-05-07
AI Q&A
2025-07-20
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 3 associated CPEs
Vendor Product Version / Range
microsoft sharepoint_server to 16.0.18526.20508 (exc)
microsoft sharepoint_server 2016
microsoft sharepoint_server 2019
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-502 The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability involves deserialization of untrusted data in on-premises Microsoft SharePoint Server, which allows an unauthorized attacker to execute code remotely over a network.


How can this vulnerability impact me? :

An attacker exploiting this vulnerability can execute arbitrary code on the affected SharePoint Server remotely, potentially leading to full compromise of the system, including data theft, data loss, or disruption of services.


What immediate steps should I take to mitigate this vulnerability?

Microsoft is preparing a comprehensive update to address this vulnerability. In the meantime, ensure that the mitigation provided in the CVE documentation is in place to protect from exploitation. Specific immediate mitigation steps are not detailed in the provided information.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart