HIGH 8.8 Microsoft

CVE-2025-49704

Microsoft SharePoint Remote Code Execution Vulnerability

Microsoft Security Update 2025-Jul: Microsoft SharePoint Remote Code Execution Vulnerability

Affected Products

References

Published: 2025-07-08 · Source: Microsoft · Feed updated: 2026-08-04
This high severity vulnerability with a CVSS score of 8.8 was published on 2025-07-08 via Microsoft. EPSS score: 99.9% (top 0% of all CVEs by exploitation probability). Affected: Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019.
vulnfeed aggregates 9166 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.