CVE-2021-28474 is a Remote Code Execution (RCE) vulnerability affecting Microsoft SharePoint Server and SharePoint Foundation. This high-severity flaw (CVSS 8.8) allows an authenticated attacker to execute arbitrary code remotely with low privileges and no user interaction, potentially leading to full compromise of the affected system. While not listed in CISA KEV, media reports indicate it was actively exploited as a zero-day, and it has garnered significant community discussion, despite no public exploit code being readily available on platforms like Metasploit or ExploitDB.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2013CPE matchmatch criteria | cpe:2.3:a:microsoft:sharepoint_foundation:2013:sp1:*:*:*:*:*:* | ||
2016CPE matchmatch criteria | cpe:2.3:a:microsoft:sharepoint_server:2016:*:*:*:enterprise:*:*:* | ||
2019CPE matchmatch criteria | cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.