CVE-2026-45454

HIGH WAF: High
CVSS 8.8 Published: 2026-06-09
CWE-22

Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

WAF Coverage Analysis

Path Traversal High WAF Coverage

OWASP: A01:2021 Broken Access Control

930xxx - Local File Inclusion

Affected Software

VendorProductVersion
microsoftsharepoint_serverup to 16.0.19725.20384
microsoftsharepoint_server2016
microsoftsharepoint_server2019

References

Back to CVE Database