SICHERHEIT & DATENSCHUTZ

Microsoft SharePoint: Exploited Vulnerability

Microsoft SharePoint: Exploited Vulnerability

Attackers are targeting critical Microsoft SharePoint security vulnerabilities that jeopardize unprotected servers.

Attackers have begun to exploit a chain of two security vulnerabilities in Microsoft SharePoint that allow them to execute arbitrary code on unprotected servers. According to the threat analysis firm Defused, these vulnerabilities are particularly concerning as they have the potential to significantly compromise the security of businesses that rely on this platform.

The affected security vulnerabilities are classified as Remote Code Execution (RCE). This means that attackers can take control of an affected system without having physical access to it. Exploiting these vulnerabilities could lead to a complete system compromise, which could have catastrophic consequences for businesses managing sensitive data.

Details on the Vulnerabilities

The first vulnerability concerns the way SharePoint handles certain requests. Attackers can send manipulated requests that cause the server to respond improperly. This can make the server vulnerable to the execution of malicious code. The second vulnerability exacerbates this risk by allowing attackers to take control of the server environment once the first vulnerability has been exploited.

Defused has released a Proof of Concept (PoC) for these vulnerabilities, making it easier for attackers to exploit them. The PoC demonstrates how an attacker can exploit the vulnerabilities in a controlled environment to showcase the impact. This could potentially enable less experienced attackers to exploit these critical security vulnerabilities.

The vulnerabilities particularly affect unprotected servers that are not equipped with the latest security updates. Businesses using SharePoint are strongly urged to review their systems and ensure that all available patches have been applied. Failing to do so could leave businesses vulnerable to attacks targeting these specific vulnerabilities.

Reactions from the Security Community

The security community has reacted with concern to the discovery of these vulnerabilities. Experts warn that the release of the PoC increases the likelihood that attackers will attempt to exploit these vulnerabilities in the wild. Many companies have already initiated internal security reviews to ensure their systems are not affected.

Some security experts recommend that businesses take additional security measures to protect their systems while waiting for official patches from Microsoft. These include monitoring network activities for suspicious patterns and implementing Intrusion Detection Systems (IDS) to detect potential attacks early.

Microsoft has not yet issued an official statement regarding the discovered vulnerabilities. However, the company is expected to provide an update in the near future to address the security vulnerabilities. Businesses using SharePoint should keep an eye on Microsoft’s official channels to stay informed about the latest developments.

The discovery of these vulnerabilities underscores the need for businesses to regularly review and update their IT security practices. Given the increasing threats from cyberattacks, it is crucial for businesses to take proactive measures to protect their systems.

comment Kommentare (0)

Noch keine Kommentare. Schreiben Sie den ersten!

Kommentar hinterlassen