CVE-2025-49706

Microsoft SharePoint Server Spoofing Vulnerability

Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.


We have discovered 2,679 live websites that are affected by CVE-2025-49706.

Run a Free Instant Scan




Affected Software

Product  Microsoft SharePoint
Category Content Management System
Vulnerable Domains2,679 live websites (49% of Microsoft SharePoint install base)
Vulnerable Versions
  • from 16 through 16.0.5508.1000
Vulnerable Versions Count120 versions ( 45% of all versions)


Common Weakness Enumeration

CWE-287 Improper Authentication



Details

  • Published - Jul 8, 2025
  • Updated - Oct 21, 2025

Website Distribution by Country

Number of websites using CVE-2025-49706
United States1,108 websites



Colombia136 websites
Canada113 websites
Vietnam112 websites
Germany92 websites
France91 websites
Turkey67 websites
Australia66 websites
Italy53 websites
Saudi Arabia48 websites

Website Distribution by TLD

Number of websites using CVE-2025-49706
.com603 websites
.org241 websites
.edu87 websites
.ca87 websites
.de86 websites
.net83 websites
.fr73 websites
.es35 websites
.eu29 websites
.dk28 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2025-49706

Top websites that are affected by CVE-2025-49706. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
********.****.com United States***
***.int Switzerland*,***
****.**.gov United States*,***
***************.org United States*,***
*********.***.es Spain**,***
******.***.***.au Australia**,***
***.gov United States**,***
****.**.gov United States**,***
*********.**********.com United States**,***
*****.ca Canada**,***
See full domain list

FAQ

CVE-2025-49706 is Improper Authentication in Microsoft SharePoint
A total of 2,679 websites have been identified as vulnerable to CVE-2025-49706, based on global website indexing conducted by WebTechSurvey.
The Microsoft SharePoint is affected by the CVE-2025-49706 vulnerability.
Microsoft SharePoint versions up to 16.0.5508.1000 are vulnerable to CVE-2025-49706.
CVE-2025-49706 is resolved in version 16.0.5508.1000 of Microsoft SharePoint.