SharePoint Server Subscription Edition — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
July 20, 2026
Last Seen
August 11, 2026

Related Threat Clusters

  • Critical SharePoint RCE Vulnerability Exploited for Key Theft

    A critical remote code execution vulnerability (CVE-2026-50522) in Microsoft SharePoint is being actively exploited. Attackers are targeting on-premise SharePoint deployments to extract IIS machine keys, allowing for…

    3 articles · Updated July 22, 2026
  • Ransomware Exploits Critical SharePoint Vulnerability CVE-2026-45659

    CISA has confirmed that ransomware groups are actively exploiting a critical vulnerability (CVE-2026-45659) in Microsoft SharePoint Server, which allows remote code execution. Over 200 unpatched SharePoint servers are…

    2 articles · Updated August 11, 2026

Recent Intelligence Reports

  • Ransomware attacks unpatched SharePoint instances — Heise.De · August 11, 2026
  • Microsoft SharePoint Vulnerabilities Actively Exploited for RCE, Web Shells, and IIS Key Theft — Cybersecuritynews · July 20, 2026

CVSS v3.1 Breakdown