CVE-2025-53770
CRITICAL(9.8)KEV — Aktiv ausgenutztCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- CVSS 9.8 — Kritisch
- EPSS 100% — sehr wahrscheinlich ausgenutzt
- Im CISA KEV-Katalog (aktiv ausgenutzt)
Erwähnungen (letzte 60 Tage)
CISA KEV
Bestätigt ausgenutzt
EPSS-Score
100.0%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
9.8
Technische Schwere
SecBoard-Einordnung
CVE-2025-53770 betrifft Microsoft SharePoint Server (On-Premises) und ist eine kritische Deserialisierungs-Schwachstelle. Ein nicht-authentifizierter Angreifer kann über das Netzwerk beliebigen Code ausführen. Die Auswirkung ist gravierend, da dies die vollständige Kompromittierung des Servers ermöglicht. Die Schwachstelle wird als kritisch eingestuft (CVSS 9.8) und hat eine extrem hohe Exploit-Wahrscheinlichkeit (EPSS 100%). Besonders besorgniserregend ist, dass sie bereits aktiv ausgenutzt wird und im CISA KEV-Katalog gelistet ist, was eine sofortige Handlungsnotwendigkeit unterstreicht. Security-Teams sollten umgehend die von Microsoft bereitgestellten Mitigationen implementieren, um sich vor aktiver Ausnutzung zu schützen. Eine schnelle Reaktion ist aufgrund der aktiven Exploitation und der hohen Kritikalität unerlässlich, bis ein umfassendes Update verfügbar ist.
KI-gestützte Einordnung auf Basis der NVD-Daten.
Beschreibung
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, please make sure that the mitigation provided in this CVE documentation is in place so that you are protected from exploitation.
Referenzen
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53770
- https://arstechnica.com/security/2025/07/sharepoint-vulnerability-with-9-8-sever...
- https://github.com/kaizensecurity/CVE-2025-53770
- https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnera...
- https://news.ycombinator.com/item?id=44629710
- https://research.eye.security/sharepoint-under-siege/
- https://therecord.media/microsoft-sharepoint-zero-day-vulnerability-exploited-gl...
- https://www.bleepingcomputer.com/news/microsoft/microsoft-sharepoint-zero-day-ex...
- https://www.cisa.gov/news-events/alerts/2025/07/20/microsoft-releases-guidance-e...
- https://www.darkreading.com/remote-workforce/microsoft-rushes-emergency-fix-expl...