Microsoft · Sharepoint Server · CVE-2025-54897
**Name of the Vulnerable Software and Affected Versions**
Microsoft SharePoint Server (affected versions not specified)
Microsoft SharePoint Server Subscription Edition (affected versions not specified)
Microsoft SharePoint Enterprise Server (affected versions not specified)
**Description**
An issue exists in the deserialization mechanism of Microsoft Office SharePoint. Deserialization is the process of converting a stream of bytes back into an object. This flaw allows an authorized attacker to execute arbitrary code remotely over a network by providing untrusted data.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.