Cyber Alerts

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

Verified Officially confirmed

Recently, Microsoft has released security updates on a missing authentication for critical function vulnerability in on-premises Microsoft SharePoint Server.

First observed
29 Jul 2026
Last checked
01 Aug 2026
Evidence records
1
Publication state
Published

What happened?

Current assessment

Recently, Microsoft has released security updates on a missing authentication for critical function vulnerability in on-premises Microsoft SharePoint Server.

Why it matters

Successful exploitation allows an unauthorized remote attacker to elevate privileges on a vulnerable on-premises SharePoint server. In operational contexts, this can facilitate unauthorized access to SharePoint content and administrative capabilities and may support broader compromise of the SharePoint environment. Reporting on related SharePoint exploitation activity indicates that attackers targeting vulnerable servers have used post-exploitation access to establish persistence, steal IIS machine keys, and enable follow-on compromise of connected enterprise resources.

Who is affected?

Affected products and groups

  • Product: Microsoft Sharepoint ServerMicrosoft Sharepoint Server 2016Microsoft Sharepoint Server 2019 — Product or product group named in the MyCERT advisory.

What should you do now?

Actions from official guidance

For technical teams

  1. CyberSecurity Malaysia encourages users and administrators to review the Microsoft MSRC Security Update Guide and apply the necessary updates. Official source

For everyone

  1. Generally, CyberSecurity Malaysia advise users and administrators to be updated with the latest security announcements by the vendor and follow best practice security policies to determine which updates should be applied. Official source

Which sources support it?

Evidence and official sources

  1. MyCERTOfficial source
    MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

    Recently, Microsoft has released security updates on a missing authentication for critical function vulnerability in on-premises Microsoft SharePoint Server.

    Published Just published · Retrieved 01 Aug 2026