Microsoft Fixes Critical SharePoint Vulnerability
Reading
Microsoft fixed a problem in SharePoint software. Hackers used this problem to attack many businesses. Some U.S. government groups were also attacked through this vulnerability.
Microsoft told users on Saturday about the attacks. They said they were fixing the problem. On Sunday, Microsoft gave instructions for SharePoint Server 2019. They also gave instructions for SharePoint Server Subscription Edition.
Adam Meyers said that all SharePoint server users have a problem. He works at a cybersecurity company called CrowdStrike. He said that the vulnerability is very important for all to solve.
This attack is called a zero-day exploit. This means engineers had no time to fix it before the attack. CISA said that the SharePoint problem is a variant. It is similar to CVE-2025-49706 and is a risk.
The problem is called ToolShell and is very serious. It allows full access to SharePoint files and services. Microsoft said the problem only affects on-site SharePoint servers. It does not affect the cloud-based SharePoint Online service.
Questions
What problem did Microsoft fix in SharePoint software?
Microsoft fixed a problem that hackers used to attack many businesses.
What did Microsoft provide instructions for?
Microsoft provided instructions for SharePoint Server 2019 and SharePoint Server Subscription Edition.
What is the name of the serious problem mentioned?
The problem is called ToolShell.
Describe the article image
Look at the article image and describe what you see on it. You may either speak or write your answer there.
Discussion
Discuss this article with your AI tutor to practice. Your tutor will help you with vocabulary and grammar.
discuss it with AI at lingolette.com