CVE-2026-45454 — Microsoft SharePoint Server Upload Page Folder Path Traversal to Remote Code Execution
aretiq.ai | research | CVE-2026-45454 | #rce | #path-traversal | #sharepoint | #webshell | #cve-2026-45454
Summary
CVE-2026-45454: path traversal in SharePoint's Upload.aspx lets an authenticated attacker write into restricted libraries like the Master Page Gallery, escalating to RCE via ASPX webshells.
- CVE
- CVE-2026-45454
- Published
- Collected
Skip to content