SharePoint Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2025-47172 - Vulnerability Database
SharePoint Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2025-47172
High
Reference:
CVE-2025-47172
Title:
SharePoint Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:
Improper neutralization of special elements used in an sql command (39sql injection39) in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.