
Agentless security for your infrastructure and applications - to build faster, more securely and in a fraction of the operational cost of other solutions

hello@secopsolution.com
This week's Patch Wednesday addresses two significant zero-day vulnerabilities discovered in Microsoft SharePoint Server: CVE-2025-53770 and CVE-2025-53771. These vulnerabilities pose a severe risk, as they could permit remote code execution (RCE) on affected SharePoint servers, placing sensitive organizational data in jeopardy.
Given the critical nature of these flaws and evidence of active exploitation, it is imperative that organizations assess their systems and apply the necessary patches immediately.
Microsoft has released security updates to address these two distinct vulnerabilities.
The following on-premise versions of Microsoft SharePoint are affected:
To protect your environment, you must deploy the official patches released by Microsoft.
Official Patches:
Important Note: These updates may not be available immediately through the standard Windows Update service. Therefore, manual installation is strongly recommended to ensure your servers are protected without delay. For automated enforcement, you can use the SecOps Solution platform.
Follow these steps to manually secure your servers:
After the installation and reboot are complete, verify that the patches were applied successfully:
Stay vigilant and ensure your systems are patched to defend against these active threats.
Important Note:
SecOps Solution is a Full-stack Patch and Vulnerability Management Platform that helps organizations identify, prioritize, and remediate security vulnerabilities and misconfigurations in seconds.
To learn more, get in touch.