Rapid7

vulnerability

Microsoft CVE-2019-0957: Microsoft SharePoint Elevation of Privilege Vulnerability

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:P/I:P/A:P)
Published
May 14, 2019
Added
May 14, 2019
Modified
Aug 12, 2025

Description

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0958.

Solutions

msft-kb4464549-44c22383-61f5-418c-b3a4-62dbcaf8df8dmsft-kb4464556-043fb373-d58a-442e-bc4c-6332fe705c41
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.