MEDIUM

CVE-2026-32201

Microsoft Sharepoint Server 2026-04-14 CVSS v3.1
CVSS
6.5
KEV

Description

Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

Summary dbcve.org

This is an improper input validation vulnerability in Microsoft Office SharePoint that allows an unauthenticated attacker to perform spoofing attacks over the network. The vulnerability likely allows attackers to craft malicious input that bypasses authentication checks or impersonates legitimate users.

Mitigation

Apply Microsoft's security updates for SharePoint when released; in the interim, implement input validation controls and monitor for suspicious authentication patterns.

Weakness (CWE)

CWE-20 Improper Input Validation

EPSS Score

43.38%
Probability of exploitation in next 30 days
98.7th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE