CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-55040 — Weak authentication in Microsoft Office SharePoint allows an unauthorized attack...

·Source: NIST NVD

Updated:

Executive Summary

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

Analysis

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network. CVSS Score: 9.1. Published: 2026-07-14T18:18:15.413.

Indicators of Compromise (1)

CVE (1)
CVE-2026-55040
Source Attribution

Originally published by NIST NVD on Jul 14, 2026. Verified by: NIST.

Related Threats

CRITICALVulnerability

NVD CRITICAL: CVE-2026-60210 — Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo...

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result in takeover of Oracle Coherence. CVSS 3.1 Base

CVE-2026-60210
NIST NVD
CRITICALVulnerability

NVD CRITICAL: CVE-2026-60209 — Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (compo...

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Coherence. Successful attacks of this vulnerability can result in takeover of Oracle Coherence. CV

CVE-2026-60209
NIST NVD
CRITICALVulnerability

NVD CRITICAL: CVE-2026-60208 — Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware ...

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized creat

CVE-2026-60208
NIST NVD