CVE-2025-53770
CVE-2025-53770: 1 tracked advisory record across MS Server. CISA KEV listed; exploitation observed. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
MS Server
1 advisory- Advisory severityCritical9.8
Critical [CVE-2025-53770] Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2025-53770Source published Source updated
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, please make sure that the mitigation provided in this CVE documentation is in place so that you are protected from exploitation. Affected products named by the advisory: Microsoft SharePoint Enterprise Server 2016; Microsoft SharePoint Server 2019; Microsoft SharePoint Server Subscription Edition.
- Affected products in this advisory
- Microsoft SharePoint Enterprise Server 2016
- Microsoft SharePoint Server 2019
- Microsoft SharePoint Server Subscription Edition
- Source-reported affected versions
- Microsoft SharePoint Enterprise Server 2016 16.0.0 before 16.0.5513.1001
- Microsoft SharePoint Server 2019 16.0.0 before 16.0.10417.20037
- Microsoft SharePoint Server Subscription Edition 16.0.0 before 16.0.18526.20508
- Source-reported fixed versions
- 16.0.5513.1001
- 16.0.10417.20037
- 16.0.18526.20508
- Mitigation guidance
- Microsoft is preparing and fully testing a comprehensive update to address this vulnerability.
Android app · Google Play
Monitor future MS Server CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.