radar

ONE Sentinel

securitySecurity/THREATS/CRIT

Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks

sourceBleeping Computer
calendar_todayApril 22, 2026
schedule1 min read
lightbulb

EXECUTIVE SUMMARY

Over 1,300 Microsoft SharePoint Servers at Risk from Ongoing Spoofing Attacks

Summary

Over 1,300 Microsoft SharePoint servers are currently vulnerable to a spoofing attack due to an unpatched zero-day vulnerability. This issue continues to be exploited in ongoing attacks, posing significant risks to affected systems.

Key Points

  • More than 1,300 Microsoft SharePoint servers are exposed online and remain unpatched.
  • The vulnerability is a spoofing issue that was initially exploited as a zero-day.
  • The vulnerability is still being actively abused in ongoing attacks.
  • The vulnerability affects Microsoft SharePoint servers, a widely used collaboration platform.

Analysis

The vulnerability in Microsoft SharePoint servers is significant due to the platform's widespread use in corporate environments. The fact that it remains unpatched and is actively exploited increases the risk of unauthorized access and data breaches. Organizations using SharePoint must prioritize patching to mitigate these risks.

Conclusion

IT professionals should immediately assess their SharePoint server deployments for vulnerabilities and apply necessary patches to prevent exploitation. Regular vulnerability assessments and updates are crucial to maintaining security posture.