Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Incident: Cyber attack on Victoria’s court system may have exposed recordings of sensitive cases | ABC News Australia

    April 8, 2026

    How Secure by Design Helps Developers Build Secure Software

    April 8, 2026

    CVE-2026-4300 | THREATINT

    April 8, 2026
    Facebook X (Twitter) Instagram
    • Demos
    • Technology
    • Gaming
    • Buy Now
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Canadian Cyber WatchCanadian Cyber Watch
    • Home
    • News
    • Alerts
    • Tips
    • Tools
    • Industry
    • Incidents
    • Events
    • Education
    Subscribe
    Canadian Cyber WatchCanadian Cyber Watch
    Home»Alerts»AL26-005 – Critical vulnerability impacting Microsoft SharePoint Server – CVE-2026-20963
    Alerts

    AL26-005 – Critical vulnerability impacting Microsoft SharePoint Server – CVE-2026-20963

    adminBy adminMarch 20, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Number: AL26-005
    Date: March 20, 2026

    Audience

    This Alert is intended for IT professionals and managers.

    Purpose

    An Alert is used to raise awareness of a recently identified cyber threat that may impact cyber information assets, and to provide additional detection and mitigation advice to recipients. The Canadian Centre for Cyber Security (“Cyber Centre”) is also available to provide additional assistance regarding the content of this Alert to recipients as requested.

    Details

    The Canadian Centre for Cyber Security (Cyber Centre) is aware of active exploitation of a vulnerability affecting Microsoft SharePoint Server. In response to the Microsoft security advisory, released on January 13, 2026Footnote 1, the Cyber Centre issued AV26-024Footnote 2 on January 13, 2026. The Advisory was updated on March 18, 2026 to include additional details.

    Tracked as CVE-2026-20963Footnote 3, this vulnerability is a critical Deserialization of Untrusted Data (CWE-502)Footnote 4 vulnerability affecting multiple versions of Microsoft SharePoint Server and could allow an unauthenticated remote attacker to execute code over the network.

    The Cyber Centre has observed exploitation of this vulnerability, and organizations are urged to take immediate action.

    This vulnerability was added to CISA’s Known Exploited Vulnerabilities (KEV) catalogFootnote 5 on March 18, 2026.

    Suggested actions

    The Cyber Centre recommends that organizations upgrade affected Microsoft SharePoint instances to a fixed version:

    Affected product Affected versions Fixed versions
    Microsoft SharePoint Enterprise Server 2016 16.0.0 before 16.0.5535.1001 16.0.5535.1001
    Microsoft SharePoint Server 2019 16.0.0 before 16.0.10417.20083 16.0.10417.20083
    Microsoft SharePoint Server Subscription Edition 16.0.0 before 16.0.19127.20442 16.0.19127.20442

    Open-source reporting indicates that other legacy versions are affected by this vulnerability but are now considered end of support/life and should be decommissioned or upgraded.

    The Cyber Centre recommends organizations to:

    • Identify all on-premises SharePoint Server instances, particularly those exposed to the internet.
    • Use or upgrade to supported versions of on-premises Microsoft SharePoint Server.
    • Apply the latest security updates from Microsoft.

    In addition, the Cyber Centre strongly recommends that organizations review and implement the Cyber Centre’s Top 10 IT Security Actions with an emphasis on the following topicsFootnote 6.

    • Patch operating systems and applications
    • Harden operating systems and applications
    • Isolate web-facing applications

    Should activity matching the content of this alert be discovered, recipients are encouraged to report via My Cyber Portal or email contact@cyber.gc.ca.

    References

    Footnote 1

    Microsoft Security Update Guide

    Return to footnote1 referrer

    Footnote 2

    Microsoft security advisory (AV26-024) – Update 2

    Return to footnote2 referrer

    Footnote 3

    NVD – CVE-2026-20963

    Return to footnote3 referrer

    Footnote 4

    CWE-502: Deserialization of Untrusted Data

    Return to footnote4 referrer

    Footnote 5

    CISA KEV

    Return to footnote5 referrer

    Footnote 6

    Top 10 IT security actions to protect Internet connected networks and information (ITSM.10.089)

    Return to footnote6 referrer



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleInfoSec News Nuggets 03/19/2026 – AboutDFIR
    Next Article Global Takedown of Massive IoT Botnets Halts Record-Breaking Cyberattacks
    admin
    • Website

    Related Posts

    Alerts

    Incident: Cyber attack on Victoria’s court system may have exposed recordings of sensitive cases | ABC News Australia

    April 8, 2026
    Alerts

    CVE-2026-4300 | THREATINT

    April 8, 2026
    Alerts

    Unauthenticated access to local configuration

    April 8, 2026
    Add A Comment

    Comments are closed.

    Demo
    Top Posts

    Global Takedown of Massive IoT Botnets Halts Record-Breaking Cyberattacks

    March 20, 202619 Views

    Catchy & Intriguing

    March 17, 202619 Views

    The Grandparent Scam: How AI Voice Technology Makes This Old Con Deadlier Than Ever

    March 18, 202617 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    85
    Featured

    Pico 4 Review: Should You Actually Buy One Instead Of Quest 2?

    January 15, 2021 Featured
    8.1
    Uncategorized

    A Review of the Venus Optics Argus 18mm f/0.95 MFT APO Lens

    January 15, 2021 Uncategorized
    8.9
    Editor's Picks

    DJI Avata Review: Immersive FPV Flying For Drone Enthusiasts

    January 15, 2021 Editor's Picks

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Demo
    Most Popular

    Global Takedown of Massive IoT Botnets Halts Record-Breaking Cyberattacks

    March 20, 202619 Views

    Catchy & Intriguing

    March 17, 202619 Views

    The Grandparent Scam: How AI Voice Technology Makes This Old Con Deadlier Than Ever

    March 18, 202617 Views
    Our Picks

    Incident: Cyber attack on Victoria’s court system may have exposed recordings of sensitive cases | ABC News Australia

    April 8, 2026

    How Secure by Design Helps Developers Build Secure Software

    April 8, 2026

    CVE-2026-4300 | THREATINT

    April 8, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Technology
    • Gaming
    • Phones
    • Buy Now
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.