What is CVE-2026-54990?
CVE-2026-55040: A weak authentication vulnerability in Microsoft SharePoint allows an unauthorized attacker to bypass a security feature over a network. This enables privilege escalation or unauthorized access via specially crafted requests. Affected systems should immediately apply the official Microsoft security update.
Azərbaycanca: CVE-2026-55040: Microsoft SharePoint-də şəbəkə üzərindən təhlükəsizlik xüsusiyyətini keçə bilən zəif autentifikasiya zəifliyi aşkarlanıb. Bu, icazəsiz şəxsə xüsusi hazırlanmış sorğu ilə mühafizəni bypass etməyə imkan verir. Təsirə məruz qalan sistemlərdə dərhal Microsoft-un rəsmi təhlükəsizlik yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-287; shared vendor: Microsoft
FAQ2
How can an attacker exploit the CVE-2026-55040 vulnerability in Microsoft SharePoint?
An unauthorized attacker can bypass the security feature over a network by sending a specially crafted request exploiting the weak authentication vulnerability.
What measure should be taken to protect against CVE-2026-55040?
The official Microsoft security update should be immediately applied to the affected systems.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.