Неправильная проверка JWT в SharePoint Server Subscription Edition приводит к произвольному входу в учетную запись
By leveraging CVE-2026-55040, a remote unauthenticated attacker can assume the identity of any SharePoint site user; the prerequisite is the attacker must know in advance the user they wish to identify as. This can be achieved in a number of ways, including via a user’s Active Directory (AD) Security ID (SID), or via a user’s AD User Principal Name (UPN)
🔗 Research
🔗 Rapid7 research
🐱 PoC
#cve #poc #sharepoint #windows #jwt
✈️ Telegram 💬 MAX
