CVE-2026-55040 PoC:Microsoft SharePoint JWT 认证绕过
github.com | 工具 | CVE-2026-55040 | #public-poc | #authentication-bypass | #microsoft | #pre-auth | #sharepoint | #jwt | #exploit | #poc | #cve-2026-55040
摘要
CVE-2026-55040 的 PoC:可为任意有效账户构造认证头,演示 Microsoft SharePoint 的 JWT 认证绕过。
为什么值得关注
公开 PoC 可为任意指定账户生成伪造认证令牌,显著降低验证和复现门槛。应立即安装微软安全更新,并仅在隔离且获授权的环境中测试。
- 厂商
- Microsoft
- 产品
- SharePoint Server
- 受影响版本
- SharePoint 2016 < 16.0.5561.1001; 2019 < 16.0.10417.20175; Subscription Edition < 16.0.19725.20434
- CVSS
- 9.1
- 发布时间
- 收录时间
Skip to content