SharePoint Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2025-64672 - Vulnerability Database
SharePoint Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2025-64672
Critical
Reference:
CVE-2025-64672
Title:
SharePoint Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
Improper neutralization of input during web page generation (39cross-site scripting39) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.