Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4137 articles · 226307 vulns · 37/41 feeds (7d)
← Back to list
9.8
CVE-2026-58644KEVEXPLOITEDPATCHED
microsoft · sharepoint_server

Microsoft SharePoint Remote Code Execution Vulnerability

Description

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

Affected Products

VendorProductVersions
microsoftsharepoint_server16.0.0, 16.0.0, 16.0.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
microsoftmicrosoft sharepoint server subscription editionmitre_affected90%
microsoftmicrosoft sharepointmitre_affected90%

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58644(vendor-advisory, patch)

Related News (15 articles)

Tier D
SecurityWeek3h ago
Warlock Expands SharePoint Exploitation in Critical Infrastructure Attacks
→ No new info (linked only)
Tier B
CERT-FR67d ago
Bulletin d'actualité CERTFR-2026-ACT-032 (27 juillet 2026)
→ No new info (linked only)
Tier D
Help Net Security68d ago
Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached
→ No new info (linked only)
Tier B
CERT-FR72d ago
Multiples vulnérabilités dans Microsoft Sharepoint (22 juillet 2026)
→ No new info (linked only)
Tier D
The Hacker News73d ago
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
→ No new info (linked only)
Tier B
CERT-FR74d ago
Bulletin d'actualité CERTFR-2026-ACT-031 (20 juillet 2026)
→ No new info (linked only)
Tier C
Rapid7 Blog76d ago
CVE-2026-58644: Microsoft SharePoint Server Unauthenticated Remote Code Execution Vulnerability Exploited in the Wild
→ No new info (linked only)
Tier D
SecurityWeek77d ago
Fresh SharePoint Vulnerability Exploited Soon After Disclosure
→ No new info (linked only)
Tier D
The Hacker News77d ago
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV
→ No new info (linked only)
Tier B
CCCS Canada78d ago
AL26-017 - Critical vulnerabilities impacting Microsoft SharePoint Server – CVE-2026-56164, CVE-2026-55040 and CVE-2026-58644
→ No new info (linked only)
Tier D
BleepingComputer79d ago
CISA warns admins to patch actively exploited SharePoint flaws
→ No new info (linked only)
Tier B
CERT-FR79d ago
Multiples vulnérabilités dans les produits Microsoft (15 juillet 2026)
→ No new info (linked only)
Tier C
Qualys Blog79d ago
Microsoft and Adobe Patch Tuesday, July 2026 Security Update Review 
→ No new info (linked only)
Tier C
VulDB79d ago
CVE-2026-58644 | Microsoft SharePoint Server Object Serialization deserialization
→ No new info (linked only)
Tier A
Microsoft MSRC79d ago
CVE-2026-58644 Microsoft SharePoint Remote Code Execution Vulnerability
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.19.8 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
CISA KEV✅ Yes
Actively exploited✅ Yes
Patch available
16.0.5556.100516.0.5561.100116.0.10417.2015316.0.10417.2017516.0.19725.2038416.0.19725.20434
CWECWE-502
PublishedJul 14, 2026
Last enriched71d agov5
Tags
CVE-2026-55164CVE-2026-55040CVE-2026-58644CVE-2026-56164CISA-KEVactively-exploited-in-wildunauthenticated-rceCVE-2026-50522
Trending Score168🔥
Source articles15
Independent10
Info Completeness11/14
Missing: epss, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-55040EXPKEV
Microsoft SharePoint Server Security Feature Bypass Vulnerability
Trending: 168
CRITICALCVE-2026-50522EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 161
MEDIUMCVE-2026-56164EXPKEV
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Trending: 157
HIGHCVE-2026-63520EXPKEV
Microsoft SharePoint Server Remote Code Execution Vulnerability
Trending: 143
HIGHCVE-2026-65660
Microsoft SharePoint Server Remote Code Execution Vulnerability
Trending: 61

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 14, 2026
Added to CISA KEV
Jul 14, 2026
Discovered by ZDM
Jul 14, 2026
Updated: exploitAvailable, activelyExploited
Jul 14, 2026
Updated: affectedVersions, cweIds, tags
Jul 15, 2026
Updated: affectedVersions, tags
Jul 17, 2026
Updated: affectedVersions, patchAvailable, tags
Jul 22, 2026
Actively Exploited
Sep 8, 2026
Exploit Available
Sep 8, 2026
Patch Available
Sep 8, 2026

Version History

v5
Last enriched 71d ago
v5Tier B71d ago

Added newly discovered vulnerable versions (16.0.5561.1001, 16.0.10417.20175, 16.0.19725.20434) with their corresponding patches, and added CVE-2026-50522 which is confirmed to have active exploitation with public proof-of-concept.

affectedVersionspatchAvailabletags
via CERT-FR
v4Tier C76d ago

Updated description with unauthenticated attack vector, CISA KEV confirmation, and Microsoft Defender/AMSI detection signatures; clarified affected product versions as SharePoint 2016/2019/Subscription Edition; added CISA-KEV and exploitation confirmation tags.

affectedVersionstags
via Rapid7 Blog
v3Tier B78d ago

Updated affected versions and patch availability, added new CWE IDs and CVE tags.

affectedVersionscweIdstags
via CCCS Canada
v2Tier A79d ago

Updated exploit availability to true and noted that the patch was inadvertently left out of the June 2026 release.

exploitAvailableactivelyExploited
via Microsoft MSRC
v179d ago

Initial creation