CVE-2019-1442: Microsoft SharePoint Server

Medium severity, CVSS 5.5. EPSS: 2.2% chance of exploitation in the next 30 days.

A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a victim a specially crafted file, which could trick the victim into entering credentials, aka 'Microsoft Office Security Feature Bypass Vulnerability'.

Affected products

  • Microsoft SharePoint Server: version 2019 only

Published 2019-11-12. Last modified 2026-06-17.