CVE Tools

CVE-2026-57105

Microsoft Office SharePoint Spoofing Vulnerability

Published: Aug 11, 2026Updated: Aug 12, 2026 Sources: CVE List NVDCWE-79

Description

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

In plain language

AI Act now

This is a SharePoint security flaw where a logged-in attacker can trick other users’ browsers into running malicious code and impersonating trusted SharePoint content; if you allow user accounts and don’t keep SharePoint fully updated, it’s something you should act on now.

Executive summary

CVE-2026-57105 is a CWE-79 script injection (cross-site scripting) flaw in Microsoft SharePoint Server where an authenticated attacker can send a malicious payload over the network that gets executed in victims’ browsers, enabling spoofing of trusted content and potentially arbitrary actions within the browser/session.

If affected, business impact
Account/session impersonation in browsersSensitive SharePoint data exposureMalicious actions under trusted UIOperational disruption from compromise

What to do now

  1. Check your Microsoft SharePoint Server version for whether it is older than the fixed releases for your edition (SharePoint Server 2019 vs Subscription Edition).
  2. If you are on an affected version, plan and schedule an upgrade to the fixed version: SharePoint Server 2019 → 16.0.10417.20198, or Subscription Edition/sharepoint server → 16.0.19725.20522.
  3. After updating, verify SharePoint is serving the updated build and that web-facing pages reject/neutralize malicious input attempts (as validated by your security or QA process).
  4. If you cannot patch immediately, restrict who can access SharePoint accounts with the least privilege needed and reduce exposure of the SharePoint site to untrusted users while you prepare the upgrade.
Patch / advisory Usually a quick update

CVSS Vector Breakdown

AV:NAC:LPR:LUI:RS:UC:HI:HA:H
Exploitability
AV:NAttack Vector
Network
AC:LAttack Complexity
Low
PR:LPrivileges Required
Low
UI:RUser Interaction
Required
Scope
S:UScope
Unchanged
Impact
C:HConfidentiality
High
I:HIntegrity
High
A:HAvailability
High

Weaknesses

Affected Products

Exploitability

Official Patch Available

Attack Graph

Products CVE Techniques Tactics

Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/ + scroll to zoom, or go fullscreen.

MITRE ATT&CK

2 techniques
Execution
Initial Access
View detailed technique mapping

References

2

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2026-57105 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
Plain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows