CVE-2025-53771: Microsoft SharePoint Server – Authentication Bypass (ToolShell)

CVE-2025-53771: Microsoft SharePoint Server - Authentication Bypass (ToolShell)-渗透云记 - 专注于网络安全与技术分享
CVE-2025-53771: Microsoft SharePoint Server – Authentication Bypass (ToolShell)
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2025-53771: Microsoft SharePoint Server – Authentication Bypass (ToolShell)

漏洞描述

Microsoft Office SharePoint Server contains an improper authentication vulnerability that allows unauthorized attackers to perform spoofing over a network. By crafting a POST request to /_layouts/15/ToolPane.aspx with a forged Referer header (/_layouts/SignOut.aspx), attackers can bypass authentication mechanisms and gain unauthorized access to protected endpoints. This vulnerability is part of the ToolShell exploit chain and is a patch bypass for CVE-2025-49706. When chained with CVE-2025-53770 (deserialization vulnerability), it enables unauthenticated remote code execution on SharePoint Server.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享