Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4996 articles · 189019 vulns · 37/41 feeds (7d)
← Back to list
8.1
CVE-2026-63520PATCHED
Microsoft · Microsoft SharePoint Enterprise Server 2016

Microsoft SharePoint Server Remote Code Execution Vulnerability

Description

Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

Affected Products

VendorProductVersions
MicrosoftMicrosoft SharePoint Enterprise Server 201616.0.0, 16.0.0, 16.0.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
microsoftmicrosoft sharepoint server subscription editionmitre_affected90%
microsoftmicrosoft sharepointmitre_affected90%
microsoftoutlookcert_advisory90%
microsoftofficecert_advisory90%
microsoftexcelcert_advisory90%

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63520(vendor-advisory, patch)

Related News (8 articles)

Tier D
SecurityWeek5h ago
SharePoint Vulnerability Exploited Shortly After PoC Release
→ No new info (linked only)
Tier C
Rapid7 Blog7h ago
AI is Working in the SOC. So Why are Security Executives More Worried Than Ever?
→ No new info (linked only)
Tier B
BSI Advisories11h ago
[NEU] [hoch] Microsoft Office Produkte: Mehrere Schwachstellen
→ No new info (linked only)
Tier B
CERT-FR20h ago
Multiples vulnérabilités dans les produits Microsoft (12 août 2026)
→ No new info (linked only)
Tier C
Qualys Blog22h ago
Microsoft Patch Tuesday, August 2026 Security Update Review
→ No new info (linked only)
Tier C
Rapid7 Blog23h ago
Patch Tuesday - August 2026
→ No new info (linked only)
Tier C
VulDB1d ago
CVE-2026-63520 | Microsoft SharePoint Server input validation
→ No new info (linked only)
Tier A
Microsoft MSRC1d ago
CVE-2026-63520 Microsoft SharePoint Server Remote Code Execution Vulnerability
→ No new info (linked only)
CVSS 3.18.1 HIGH
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
CISA KEV❌ No
Actively exploited❌ No
Patch available
16.0.5565.100116.0.10417.2019816.0.19725.20522
CWECWE-20
PublishedAug 11, 2026
Last enriched1d ago
Trending Score61
Source articles8
Independent7
Info Completeness7/14
Missing: title, description, epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-68820EXPKEV
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Trending: 153
CRITICALCVE-2026-55040EXPKEV
Microsoft SharePoint Server Security Feature Bypass Vulnerability
Trending: 152
HIGHCVE-2026-45659EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 151
HIGHCVE-2026-50656EXP
Microsoft Defender Elevation of Privilege Vulnerability
Trending: 96
CRITICALCVE-2026-50522EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 75

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 11, 2026
Discovered by ZDM
Aug 11, 2026
Patch Available
Aug 12, 2026