← Back to CVE search

CVE-2026-47294

Microsoft Office SharePoint

Description

Improper neutralization of special elements used in an os command (-os command injection-) in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

CVSS 8EPSS 0.662%Risk 0.85
View source
Published
2026-06-01 19:16:53
Affected versions
unknown
Type
Core software
Last modified
2026-07-22 08:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H