Security News > 2023 > September > Exploit released for Microsoft SharePoint Server auth bypass flaw

Proof-of-concept exploit code has surfaced on GitHub for a critical authentication bypass vulnerability in Microsoft SharePoint Server, allowing privilege escalation.
Janggggg successfully achieved RCE on a Microsoft SharePoint Server using this exploit chain during the March 2023 Pwn2Own contest in Vancouver, earning a $100,000 reward.
"The script outputs details of admin users with elevated privileges and can operate in both single and mass exploit modes," the exploit's developer says.
A YARA rule is also available to help network defenders analyze logs for signs of potential exploitation on their SharePoint servers using the CVE-2023-29357 PoC exploit.
Despite the existing exploit not granting immediate remote code execution capabilities, it is highly recommended to apply the security patches issued by Microsoft earlier this year as a preventive measure against potential attacks.
Exploit released for Ivanti Sentry bug abused as zero-day in attacks.
News URL
Related news
- Hijacked Microsoft web domain injects spam into SharePoint servers (source)
- New ClickFix attack deploys Havoc C2 via Microsoft Sharepoint (source)
- New SuperBlack ransomware exploits Fortinet auth bypass flaws (source)
- Microsoft isn't fixing 8-year-old shortcut exploit abused for spying (source)
- Android Malware Exploits a Microsoft-Related Security Blind Spot to Avoid Detection (source)
- New Windows 11 trick lets you bypass Microsoft Account requirement (source)
- Windows 11 Forces Microsoft Account Sign In & Removes Bypass Trick Option (source)
- Microsoft fixes auth issues on Windows Server, Windows 11 24H2 (source)
- Hackers exploit WordPress plugin auth bypass hours after disclosure (source)
- Week in review: Microsoft patches exploited Windows CLFS 0-day, WinRAR MotW bypass flaw fixed (source)
Related Vulnerability
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-06-14 | CVE-2023-29357 | Unspecified vulnerability in Microsoft Sharepoint Server 2019 Microsoft SharePoint Server Elevation of Privilege Vulnerability | 9.8 |