Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2981 articles · 185100 vulns · 37/41 feeds (7d)
← Back to list
9.8
CVE-2026-58644KEVEXPLOITEDPATCHED
microsoft · sharepoint_server

Microsoft SharePoint Remote Code Execution Vulnerability

Description

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

Affected Products

VendorProductVersions
microsoftsharepoint_server16.0.0, 16.0.0, 16.0.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
microsoftmicrosoft sharepoint server subscription editionmitre_affected90%
microsoftmicrosoft sharepointmitre_affected90%

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58644(vendor-advisory, patch)

Related News (14 articles)

Tier B
CERT-FR13d ago
Bulletin d'actualité CERTFR-2026-ACT-032 (27 juillet 2026)
→ No new info (linked only)
Tier D
Help Net Security13d ago
Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached
→ No new info (linked only)
Tier B
CERT-FR18d ago
Multiples vulnérabilités dans Microsoft Sharepoint (22 juillet 2026)
→ No new info (linked only)
Tier D
The Hacker News19d ago
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
→ No new info (linked only)
Tier B
CERT-FR20d ago
Bulletin d'actualité CERTFR-2026-ACT-031 (20 juillet 2026)
→ No new info (linked only)
Tier C
Rapid7 Blog22d ago
CVE-2026-58644: Microsoft SharePoint Server Unauthenticated Remote Code Execution Vulnerability Exploited in the Wild
→ No new info (linked only)
Tier D
SecurityWeek22d ago
Fresh SharePoint Vulnerability Exploited Soon After Disclosure
→ No new info (linked only)
Tier D
The Hacker News22d ago
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV
→ No new info (linked only)
Tier B
CCCS Canada24d ago
AL26-017 - Critical vulnerabilities impacting Microsoft SharePoint Server – CVE-2026-56164, CVE-2026-55040 and CVE-2026-58644
→ No new info (linked only)
Tier D
BleepingComputer24d ago
CISA warns admins to patch actively exploited SharePoint flaws
→ No new info (linked only)
Tier B
CERT-FR25d ago
Multiples vulnérabilités dans les produits Microsoft (15 juillet 2026)
→ No new info (linked only)
Tier C
Qualys Blog25d ago
Microsoft and Adobe Patch Tuesday, July 2026 Security Update Review 
→ No new info (linked only)
Tier C
VulDB25d ago
CVE-2026-58644 | Microsoft SharePoint Server Object Serialization deserialization
→ No new info (linked only)
Tier A
Microsoft MSRC25d ago
CVE-2026-58644 Microsoft SharePoint Remote Code Execution Vulnerability
→ No new info (linked only)
CVSS 3.19.8 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
CISA KEV✅ Yes
Actively exploited✅ Yes
Patch available
16.0.5556.100516.0.5561.100116.0.10417.2015316.0.10417.2017516.0.19725.2038416.0.19725.20434
CWECWE-502
PublishedJul 14, 2026
Last enriched17d agov5
Tags
CVE-2026-55164CVE-2026-55040CVE-2026-58644CVE-2026-56164CISA-KEVactively-exploited-in-wildunauthenticated-rceCVE-2026-50522
Trending Score26
Source articles14
Independent10
Info Completeness11/14
Missing: epss, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-50522EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 129
MEDIUMCVE-2026-56164EXPKEV
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Trending: 128
HIGHCVE-2026-42897EXPKEV
Microsoft Exchange Server Spoofing Vulnerability
Trending: 72
CRITICALCVE-2026-65667
Microsoft Teams Elevation of Privilege Vulnerability
Trending: 51
CRITICALCVE-2026-56162
Azure SQL Database Elevation of Privilege Vulnerability
Trending: 51

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 14, 2026
Added to CISA KEV
Jul 14, 2026
Discovered by ZDM
Jul 14, 2026
Updated: exploitAvailable, activelyExploited
Jul 14, 2026
Updated: affectedVersions, cweIds, tags
Jul 15, 2026
Updated: affectedVersions, tags
Jul 17, 2026
Updated: affectedVersions, patchAvailable, tags
Jul 22, 2026
Actively Exploited
Jul 26, 2026
Exploit Available
Jul 26, 2026
Patch Available
Jul 26, 2026

Version History

v5
Last enriched 17d ago
v5Tier B17d ago

Added newly discovered vulnerable versions (16.0.5561.1001, 16.0.10417.20175, 16.0.19725.20434) with their corresponding patches, and added CVE-2026-50522 which is confirmed to have active exploitation with public proof-of-concept.

affectedVersionspatchAvailabletags
via CERT-FR
v4Tier C22d ago

Updated description with unauthenticated attack vector, CISA KEV confirmation, and Microsoft Defender/AMSI detection signatures; clarified affected product versions as SharePoint 2016/2019/Subscription Edition; added CISA-KEV and exploitation confirmation tags.

affectedVersionstags
via Rapid7 Blog
v3Tier B24d ago

Updated affected versions and patch availability, added new CWE IDs and CVE tags.

affectedVersionscweIdstags
via CCCS Canada
v2Tier A25d ago

Updated exploit availability to true and noted that the patch was inadvertently left out of the June 2026 release.

exploitAvailableactivelyExploited
via Microsoft MSRC
v125d ago

Initial creation