Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2025-49704

Description

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

POC

Reference

No PoCs from references.

Github

- https://github.com/ARPSyndicate/cve-scores

- https://github.com/CyprianAtsyor/ToolShell-CVE-2025-53770-SharePoint-Exploit-Lab-LetsDefend

- https://github.com/DevGreick/devgreick

- https://github.com/Michaael01/LetsDefend--SOC-342-CVE-2025-53770-SharePoint-Exploit-ToolShell

- https://github.com/Salehswt/SharePoint-CVEs-Hunter

- https://github.com/UnHackerEnCapital/RiCharEpoint

- https://github.com/a-hydrae/ToolShell-Honeypot

- https://github.com/dorkerdevil/toolshell-detection

- https://github.com/felipealfonsog/felipealfonsog

- https://github.com/ghostn4444/CVE-2025-53770

- https://github.com/giterlizzi/secdb-feeds

- https://github.com/grupooruss/CVE-2025-53770-Checker

- https://github.com/irsdl/ysonet

- https://github.com/khizar-anjum/risky-business-mcp

- https://github.com/packetinside/CISA_BOT

- https://github.com/saladin0x1/CVE-2025-53770

- https://github.com/ums91/CISA_BOT