Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4357 articles · 196326 vulns · 36/41 feeds (7d)
← Back to list
6.5
CVE-2026-32201KEVEXPLOITEDPATCHED
microsoft · sharepoint_server

Microsoft SharePoint Server Spoofing Vulnerability

Description

Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

Affected Products

VendorProductVersions
microsoftsharepoint_server16.0.0, 16.0.0, 16.0.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
microsoftsharepointcert_advisory90%
microsoftpowerpointcert_advisory90%
microsoftmicrosoft office onlinecert_advisory90%
microsoftofficecert_advisory90%
microsoftexcelcert_advisory90%

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32201(vendor-advisory, patch)

Related News (18 articles)

Tier B
JPCERT/CC
Security Alert: Microsoft Releases April 2026 Security Updates
→ No new info (linked only)
Tier D
BleepingComputer39d ago
CISA warns admins to patch actively exploited SharePoint flaws
→ No new info (linked only)
Tier D
BleepingComputer123d ago
Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks
→ No new info (linked only)
Tier D
The Hacker News125d ago
⚡ Weekly Recap: Vercel Hack, Push Fraud, QEMU Abused, New Android RATs Emerge & More
→ No new info (linked only)
Tier B
CERT-FR126d ago
Bulletin d'actualité CERTFR-2026-ACT-018 (20 avril 2026)
→ No new info (linked only)
Tier D
Infosecurity Magazine130d ago
Microsoft Fixes Two Zero-Days in April Patch Tuesday
→ No new info (linked only)
Tier B
BSI Advisories130d ago
[NEU] [mittel] Microsoft Office: Mehrere Schwachstellen
→ No new info (linked only)
Tier D
Heise Security130d ago
Patchday: Angreifer attackieren Edge und Microsoft SharePoint Server
→ No new info (linked only)
Tier D
Heise Security130d ago
Warnung vor Attacken auf 17 Jahre alte Excel-Lücke
→ No new info (linked only)
Tier D
CSO Online131d ago
April Patch Tuesday roundup: Zero day vulnerabilities and critical bugs
→ No new info (linked only)
Tier B
CERT-FR131d ago
Multiples vulnérabilités dans les produits Microsoft (15 avril 2026)
→ No new info (linked only)
Tier C
Krebs on Security131d ago
Patch Tuesday, April 2026 Edition
→ No new info (linked only)
Tier C
Cisco Talos131d ago
Microsoft Patch Tuesday for April 2026 - Snort Rule and Prominent Vulnerabilities
→ No new info (linked only)
Tier B
CCCS Canada131d ago
Microsoft security advisory – April 2026 monthly rollup (AV26-352)
→ No new info (linked only)
Tier C
VulDB131d ago
CVE-2026-32201 | Microsoft SharePoint Server 2019/LTSC 2021/LTSC 2024 input validation
→ No new info (linked only)
Tier D
SecurityWeek131d ago
Microsoft Patches Exploited SharePoint Zero-Day and 160 Other Vulnerabilities
→ No new info (linked only)
Tier A
Microsoft MSRC131d ago
CVE-2026-32201 Microsoft SharePoint Server Spoofing Vulnerability
→ No new info (linked only)
Tier C
CrowdStrike Blog132d ago
April 2026 Patch Tuesday: Two Zero-Days and Eight Critical Vulnerabilities Among 164 CVEs
→ No new info (linked only)
CVSS 3.16.5 MEDIUM
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N/E:F/RL:O/RC:C
CISA KEV✅ Yes
Actively exploited✅ Yes
Patch available
16.0.5548.100316.0.10417.2011416.0.19725.20210
CWECWE-20
PublishedApr 14, 2026
Last enriched123d agov13
Tags
zero-dayactive exploitationserver spoofingCVE-2026-32201
Trending Score1
Source articles18
Independent15
Info Completeness11/14
Missing: epss, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-69836EXPKEV
Microsoft Entra ID Remote Code Execution Vulnerability
Trending: 129
CRITICALCVE-2026-55040EXPKEV
Microsoft SharePoint Server Security Feature Bypass Vulnerability
Trending: 87
CRITICALCVE-2026-50522EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 80
HIGHCVE-2026-68820EXPKEV
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Trending: 73
HIGHCVE-2026-45586EXPKEV
Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege Vulnerability
Trending: 65

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Apr 14, 2026
Added to CISA KEV
Apr 14, 2026
Discovered by ZDM
Apr 14, 2026
Updated: description, exploitAvailable, activelyExploited
Apr 14, 2026
Updated: cweIds
Apr 14, 2026
Updated: affectedVersions, severity
Apr 14, 2026
Updated: description
Apr 14, 2026
Updated: tags
Apr 15, 2026
Updated: description
Apr 15, 2026
Updated: affectedVersions
Apr 15, 2026
Updated: description, severity
Apr 15, 2026
Updated: description, cweIds, tags
Apr 15, 2026
Updated: description
Apr 15, 2026
Updated: affectedVersions
Apr 15, 2026
Updated: affectedVersions, tags
Apr 22, 2026
Actively Exploited
Aug 14, 2026
Exploit Available
Aug 14, 2026
Patch Available
Aug 14, 2026

Version History

v13
Last enriched 123d ago
v13Tier D123d ago

Updated description with technical details, added affected versions including 2016, 2019, and Subscription Edition, changed severity to HIGH, and included CVE-2026-32201 in tags.

affectedVersionstags
via BleepingComputer
v12Tier B130d ago

Updated affected versions and noted that the patch available field is now null.

affectedVersions
via CERT-FR
v11Tier D130d ago

Updated description with more technical detail about the impact of the vulnerability.

description
via Infosecurity Magazine
v10Tier D130d ago

Updated description with more technical detail, added new CWE, and included additional tags related to server spoofing.

descriptioncweIdstags
via Infosecurity Magazine
v9Tier D130d ago

Updated severity to HIGH and added details about attackers being able to view and modify isolated data.

descriptionseverity
via Heise Security
v8Tier D130d ago

Updated affected versions to include 16.0.5548.1003 and noted that the patch is now null.

affectedVersions
via Heise Security
v7Tier B131d ago

Updated description with additional details on potential exploitation and set patchAvailable to null.

description
via JPCERT/CC
v6Tier D131d ago

Updated severity to HIGH, CVSS score to 9.8, and added new tags related to zero-day and active exploitation.

tags
via CSO Online
v5Tier C131d ago

Updated description with details on how CVE-2026-32201 can be exploited and confirmed that it is actively exploited.

description
via Krebs on Security
v4Tier C131d ago

Updated product to include Microsoft SharePoint Server 2019/LTSC 2021/LTSC 2024, changed severity to CRITICAL, and noted no available exploit.

affectedVersionsseverity
via VulDB
v3Tier D131d ago

Updated description with additional details, changed severity to HIGH, added new CWE, and noted that patch information is unclear.

cweIds
via SecurityWeek
v2Tier A131d ago

Added a detailed description of the vulnerability and marked it as actively exploited with an exploit available.

descriptionexploitAvailableactivelyExploited
via Microsoft MSRC
v1131d ago

Initial creation