Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
SharePoint and MikroTik Vulnerabilities Exploited

SharePoint and MikroTik Vulnerabilities Exploited

Posted on September 26, 2026 By CWS

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has highlighted two significant security vulnerabilities within Microsoft SharePoint and MikroTik RouterOS, which are currently being exploited. These issues have been added to CISA’s Known Exploited Vulnerabilities (KEV) catalog, reflecting their critical nature and active exploitation.

Details of the Vulnerabilities

The first vulnerability, identified as CVE-2026-65660, is a code injection flaw in Microsoft SharePoint with a CVSS score of 8.8. This vulnerability allows an attacker with network access to execute arbitrary code. Originally labeled as a spoofing vulnerability, Microsoft has revised its description to indicate potential remote code execution.

The second vulnerability, CVE-2026-67279, affects MikroTik RouterOS with a CVSS score of 6.9. This issue involves improper enforcement of workflow, enabling unauthenticated users to establish a session and send requests. This vulnerability has been linked with another flaw, CVE-2026-86060, to form an exploit known as MikroTrick.

Impact and Exploitation

Microsoft has confirmed observing active attacks leveraging CVE-2026-65660 as of late September 2026, although details on the attackers or the extent of the impact remain undisclosed. Meanwhile, the MikroTrick exploit combines CVE-2026-67279 with CVE-2026-86060, allowing attackers to gain administrative control over vulnerable routers without authentication, as reported by CERT Polska.

Security firm Bishop Fox successfully reproduced the exploit on RouterOS 7.x versions, demonstrating the significant risk posed by these combined vulnerabilities. Emilio Gallegos from Bishop Fox highlighted that this exploit reveals a critical design flaw where trust boundaries are improperly managed, turning a local feature into a remote vulnerability.

Response and Mitigation

In response to these vulnerabilities, CISA has mandated that Federal Civilian Executive Branch (FCEB) agencies implement necessary patches by the end of September 2026. This directive underscores the urgency and severity of addressing these security flaws to prevent further exploitation.

The ongoing exploitation of these vulnerabilities underscores the importance of timely patching and robust security measures. Organizations using Microsoft SharePoint and MikroTik RouterOS are advised to assess their systems and apply the recommended patches to mitigate potential risks.

As cyber threats continue to evolve, maintaining up-to-date security protocols and monitoring for vulnerabilities is crucial in safeguarding against exploitation.

The Hacker News Tags:CISA, CVE, Cybersecurity, Exploitation, MikroTik, network security, RCE, RouterOS, SharePoint, Vulnerabilities

Post navigation

Previous Post: Teen Researcher Uncovers Major Microsoft Data Vulnerability
Next Post: New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Related Posts

Critical Flaw in MCP Protocol Poses Major AI Supply Chain Risk Critical Flaw in MCP Protocol Poses Major AI Supply Chain Risk The Hacker News
NANOREMOTE Malware Uses Google Drive API for Hidden Control on Windows Systems NANOREMOTE Malware Uses Google Drive API for Hidden Control on Windows Systems The Hacker News
From Browser Stealer to Intelligence-Gathering Tool From Browser Stealer to Intelligence-Gathering Tool The Hacker News
Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure The Hacker News
VoidLink Linux Malware Framework Built with AI Assistance Reaches 88,000 Lines of Code VoidLink Linux Malware Framework Built with AI Assistance Reaches 88,000 Lines of Code The Hacker News
Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks
  • SharePoint and MikroTik Vulnerabilities Exploited
  • Teen Researcher Uncovers Major Microsoft Data Vulnerability
  • OpenAI AI Models Interact with US Government Sites

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks
  • SharePoint and MikroTik Vulnerabilities Exploited
  • Teen Researcher Uncovers Major Microsoft Data Vulnerability
  • OpenAI AI Models Interact with US Government Sites

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark