What is it?
Microsoft Sharepoint (Subscription Edition) servers are vulnerable to attackers gaining access to, reading and writing critical data on your server installation.
Why is it a risk?
Using this vulnerability, an attacker can execute arbitrary code on your server from a remote location.
This is considered a CRITICAL vulnerability.
How can you mitigate the risk?
Follow the directions provided in the Microsoft link below.
Resources:
Microsoft – Description of the security update for SharePoint Server Subscription Edition: February 11, 2025 (KB5002681)