Security Advisory

CVE-2026-20947

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-13 17:56:52
Last updated 2026-04-01 13:49:01
Assigner microsoft
State PUBLISHED

Description

Improper neutralization of special elements used in an sql command (sql injection) in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.