HIGH 8.8 Microsoft PoC

CVE-2025-54897

Microsoft SharePoint Remote Code Execution Vulnerability

Microsoft Security Update 2025-Sep: Microsoft SharePoint Remote Code Execution Vulnerability

Affected Products

References

Published: 2025-09-09 · Source: Microsoft · Feed updated: 2026-09-18
This high severity vulnerability with a CVSS score of 8.8 was published on 2025-09-09 via Microsoft. 🚨 A public proof-of-concept exploit is available on GitHub. EPSS score: 19.1% (top 3% of all CVEs by exploitation probability). Affected: Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription Edition.
vulnfeed aggregates 14649 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.