CVE-2023-29357: Microsoft SharePoint Server Privilege Escalation Vulnerability

Critical severity, CVSS 9.8. Actively exploited: in CISA KEV since 2024-01-10. EPSS: 100% chance of exploitation in the next 30 days.

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Affected products

  • Microsoft SharePoint Server: version 2019 only

Published 2023-06-14. Last modified 2026-06-17.