THREATOPS
THREAT OPSThreat News › CVE-2026-63520: Microsoft SharePoint Remote Code Execution (FIXED)

CVE-2026-63520: Microsoft SharePoint Remote Code Execution (FIXED)

medrapid7Published 2026-08-11

<h2 style="direction: ltr;">Overview</h2><p style="direction: ltr;"><span style="font-size: undefined;">Rapid7 Labs conducted a zero-day research project against Microsoft SharePoint, resulting in the discovery of two new vulnerabilities that, when chained together, achieve unauthenticated remote code execution (RCE) against a vulnerable SharePoint server. Today, both Rapid7 and Microsoft are disc

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://www.rapid7.com/blog/post/etr-cve-2026-63520-microsoft-sharepoint-remote-code-execution-fixed