CVE-2024-38094: Microsoft SharePoint Deserialization Vulnerability.
Microsoft SharePoint Deserialization Vulnerability. Microsoft SharePoint contains a deserialization vulnerability that allows for remote code execution.
- CISA KEV-listed (remediation due 2024-11-12)
- used in ransomware campaigns
- EPSS 70.3% (98.7% percentile)