CVE-2026-20947
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allo
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
HIGH · CVSS 8.8
EPSS 0.00464
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0