THREAT OPS › Threat News › [NVD] CVE-2025-53770 (CRITICAL 9.8) — Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network.
Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild.
Microsoft is preparing and fully testing a comprehensive update t
[NVD] CVE-2025-53770 (CRITICAL 9.8) — Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update t
CVE-2025-53770 CVSS: 9.8 CRITICAL Published: 2025-07-20T01:15:30.777
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, pl
MITRE ATT&CK techniques
- SharepointT1213.002
Indicators of compromise
- CVE-2025-53770cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-53770