Cyber Alerts
MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability
Recently, Microsoft has released security updates on a missing authentication for critical function vulnerability in on-premises Microsoft SharePoint Server.
- First observed
- 29 Jul 2026
- Last checked
- 01 Aug 2026
- Evidence records
- 1
- Publication state
- Published
What happened?
Current assessment
Recently, Microsoft has released security updates on a missing authentication for critical function vulnerability in on-premises Microsoft SharePoint Server.
Why it matters
Successful exploitation allows an unauthorized remote attacker to elevate privileges on a vulnerable on-premises SharePoint server. In operational contexts, this can facilitate unauthorized access to SharePoint content and administrative capabilities and may support broader compromise of the SharePoint environment. Reporting on related SharePoint exploitation activity indicates that attackers targeting vulnerable servers have used post-exploitation access to establish persistence, steal IIS machine keys, and enable follow-on compromise of connected enterprise resources.
Who is affected?
Affected products and groups
- Product: Microsoft Sharepoint ServerMicrosoft Sharepoint Server 2016Microsoft Sharepoint Server 2019 — Product or product group named in the MyCERT advisory.
What should you do now?
Actions from official guidance
For technical teams
- CyberSecurity Malaysia encourages users and administrators to review the Microsoft MSRC Security Update Guide and apply the necessary updates. Official source
For everyone
- Generally, CyberSecurity Malaysia advise users and administrators to be updated with the latest security announcements by the vendor and follow best practice security policies to determine which updates should be applied. Official source
Which sources support it?
Evidence and official sources
-
MyCERTOfficial sourceMA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability
Recently, Microsoft has released security updates on a missing authentication for critical function vulnerability in on-premises Microsoft SharePoint Server.
Published Just published · Retrieved 01 Aug 2026