SharePoint attacks put unpatched and end-of-life servers at risk

SharePoint attacks put unpatched and end-of-life servers at risk. Active exploitation is targeting a Microsoft SharePoint Server weakness that can let an authenticated attacker execute code.

Daily Cyber News: SharePoint attacks put unpatched and end-of-life servers at risk

Active exploitation is targeting a Microsoft SharePoint Server weakness that can let an authenticated attacker execute code. When it’s chained with other SharePoint weaknesses, it can reportedly enable remote code execution before authentication on servers configured to permit anonymous access. Organizations that haven’t applied earlier SharePoint security updates face greater exposure because the attack can rely on more than one weakness.

Key context: A compromised collaboration server could expose internal documents, identities and trusted business workflows.

For more cybersecurity news and the full Daily Cyber newsletter, visit DailyCyber.News.
Cybersecurity training, courses, books, and resources: BareMetalCyber.com.

Topics: cybersecurity news, cybersecurity, cyber risk, active exploitation, remote code execution, SharePoint, attacks, unpatched, end-of-life, servers.

SharePoint attacks put unpatched and end-of-life servers at risk
Broadcast by