Patch SharePoint Now: Microsoft Servers at Risk of New ToolShell RCE Attack

A critical remote code execution (RCE) vulnerability in Microsoft SharePoint is being actively exploited in the wild. If successful, attackers can gain full access to SharePoint content, deploy malicious code, and potentially move laterally to other Windows services, such as Outlook, Teams, and OneDrive. While Microsoft patched the two vulnerabilities that made ToolShell possible inJuly’s Patch Tuesday rollouton July 18, Eye Security noticed that dozens of systems were being actively compromised...

Save to Folder

Choose a folder to save this article: