SECURITY·중요도 9·2026. 08. 13.·The Hacker News

Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

── KO ──────────────────

새롭게 공개된 SharePoint 취약점을 공격자들이 이용하고 있다는 보고서입니다.

Microsoft SharePoint의 새로운 취약점 CVE-2026-55040이 공개된 PoC 코드 이후 공격자들에 의해 exploit되고 있습니다. 이 취약점은 약한 인증에서 발생한 중요한 보안 기능 우회와 관련이 있으며, 2026년 7월 Patch Tuesday 업데이트의 일환으로 Microsoft에 의해 패치되었습니다. CVSS 점수는 9.1로, 심각한 보안 위협으로 분류됩니다.


── EN ──────────────────

Attackers are exploiting a newly disclosed SharePoint vulnerability after the PoC release.

A newly disclosed vulnerability in Microsoft SharePoint, CVE-2026-55040, is being exploited by threat actors following the release of a proof-of-concept (PoC) code. This vulnerability relates to a critical security feature bypass resulting from weak authentication and was patched by Microsoft as part of its July 2026 Patch Tuesday updates. It has a CVSS score of 9.1, indicating a significant security risk.

원문 보기 →목록으로