Home Microsoft CVE-2023-29357
CRITICAL: THIS VULNERABILITY IS ACTIVELY BEING EXPLOITED IN THE WILD (CISA KEV CATALOG)
Back to Microsoft

CVE-2023-29357

Exploited

Microsoft SharePoint Server - SharePoint Foundation

Microsoft CVSS 9.8 Updated March 18, 2026

Executive Risk Summary

"A vulnerability in Microsoft SharePoint Server could allow an attacker to elevate their privileges, potentially leading to unauthorized access to sensitive data. This vulnerability is considered critical and should be patched as soon as possible to prevent potential exploitation."

Operational Audit Arsenal

Target Type DLL
Target Asset Microsoft.SharePoint.dll
Standard Path %windir%\Microsoft.NET\assembly\GAC_MSIL\Microsoft.SharePoint\
PowerShell
# 🛠️ Senior Engineer Universal Audit
# Target: Microsoft.SharePoint.dll (DLL)
$Targets = 'Microsoft.SharePoint.dll'
$SearchPaths = @("$env:windir\System32", "$env:ProgramFiles", "${env:ProgramFiles(x86)}")

Get-ChildItem -Path $SearchPaths -Include $Targets -Recurse -ErrorAction SilentlyContinue | 
Select-Object FullName, @{Name="Version";Expression={$_.VersionInfo.ProductVersion}}

Patch Impact Forecast

Reboot Required Likely

Moderate, may require downtime for SharePoint services

Internal Work Notes

Elevation of Privilege vulnerability in Microsoft SharePoint Server, patching required to prevent potential exploitation and ensure data integrity.

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Related Microsoft Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.