<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>KB-2344 Information about the Microsoft SharePoint Server Vulnerability (CVE-2025-53770 and CVE-2025-53771)</title><link>https://community.appian.com/support/w/kb/3691/kb-2344-information-about-the-microsoft-sharepoint-server-vulnerability-cve-2025-53770-and-cve-2025-53771</link><description /><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>KB-2344 Information about the Microsoft SharePoint Server Vulnerability (CVE-2025-53770 and CVE-2025-53771)</title><link>https://community.appian.com/support/w/kb/3691/kb-2344-information-about-the-microsoft-sharepoint-server-vulnerability-cve-2025-53770-and-cve-2025-53771</link><pubDate>Thu, 24 Jul 2025 16:25:56 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:0b9a1737-2a56-4822-bc04-54e6200e606f</guid><dc:creator>pauline.delacruz</dc:creator><comments>https://community.appian.com/support/w/kb/3691/kb-2344-information-about-the-microsoft-sharepoint-server-vulnerability-cve-2025-53770-and-cve-2025-53771#comments</comments><description>Current Revision posted to Appian Knowledge Base by pauline.delacruz on 7/24/2025 4:25:56 PM&lt;br /&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;On 19-Jul-2025, Microsoft announced active exploitation of two vulnerabilities against its on-premise Microsoft SharePoint Server software.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Appian does not use on-premise Microsoft SharePoint software and is not impacted by any related CVEs. We will continue to monitor the situation and provide any updates as appropriate.&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;&lt;span style="font-weight:400;"&gt;Additional Notes:&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;The following CVEs were released with additional information on the scope of the vulnerability:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53770"&gt;&lt;span style="font-weight:400;"&gt;CVE-2025-53770&lt;/span&gt;&lt;/a&gt;&lt;span style="font-weight:400;"&gt; - (&amp;ldquo;Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network.&amp;rdquo;)&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53771"&gt;&lt;span style="font-weight:400;"&gt;CVE-2025-53771&lt;/span&gt;&lt;/a&gt;&lt;span style="font-weight:400;"&gt; - (&amp;ldquo;Improper limitation of a pathname to a restricted directory (&amp;#39;path traversal&amp;#39;) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.&amp;rdquo;)&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Supporting Documentation:&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53770"&gt;&lt;span style="font-weight:400;"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-53770&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53771"&gt;&lt;span style="font-weight:400;"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-53771&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;a href="https://unit42.paloaltonetworks.com/microsoft-sharepoint-cve-2025-49704-cve-2025-49706-cve-2025-53770/"&gt;&lt;span style="font-weight:400;"&gt;https://unit42.paloaltonetworks.com/microsoft-sharepoint-cve-2025-49704-cve-2025-49706-cve-2025-53770/&lt;/span&gt;&lt;span style="font-weight:400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;&lt;span style="font-weight:400;"&gt;Affected Versions&lt;/span&gt;&lt;/h2&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;This article applies to all supported versions of Appian.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Last reviewed: &lt;/span&gt;&lt;span style="font-weight:400;"&gt;July 22, 2025&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;
</description></item></channel></rss>