← Vulnerability feed

Vulnerability record · CVE-2008-4032 · published 10 December 2008

CVE-2008-4032: SharePoint Server and Search Server missing auth on admin functions

Microsoft · Office Sharepoint Server

Microsoft Office SharePoint Server 2007 (Gold and SP1) and Microsoft Search Server 2008 fail to properly authenticate and authorize requests to administrative URIs. Unauthenticated remote attackers can reach administrative functionality, leading to denial of service, information disclosure, and script creation that runs in the context of the site.

7.5 CVSS 2.0 High EPSS 48% · top 1.2% CWE-287 · Improper authentication
7.5CVSS 2.0 base score
48%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
12References
16 Jun 2026Last modified by NVD

Description

Microsoft Office SharePoint Server 2007 Gold and SP1 and Microsoft Search Server 2008 do not properly perform authentication and authorization for administrative functions, which allows remote attackers to cause a denial of service (server load), obtain sensitive information, and "create scripts that would run in the context of the site" via requests to administrative URIs, aka "Access Control Vulnerability."

AV:N/AC:L/Au:N/C:P/I:P/A:P

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 20 September 2026. Confidence: medium.

high priorityUnauthenticated remote access to administrative functions with confidentiality, integrity, and availability impact, plus very high EPSS percentile, warrants high priority despite no KEV listing.

What it is

Microsoft Office SharePoint Server 2007 (Gold and SP1) and Microsoft Search Server 2008 fail to properly authenticate and authorize requests to administrative URIs. Unauthenticated remote attackers can reach administrative functionality, leading to denial of service, information disclosure, and script creation that runs in the context of the site.

Impact

An attacker can cause server load denial of service, obtain sensitive information, and create scripts that execute in the site's context, potentially enabling further compromise of the SharePoint environment.

Attack surface

Reachable over the network via HTTP requests to administrative URIs; the CVSS vector AV:N/AC:L/Au:N indicates no authentication and no user interaction are required.

Exploitation

Not listed in CISA KEV and no ransomware associations are documented; EPSS is 0.4791 (98.8th percentile), indicating high predicted exploitation likelihood, though no public exploit references are tagged in the record.

What to do

  • Apply Microsoft security bulletin MS08-077 for SharePoint Server 2007 and Search Server 2008.
  • Restrict network access to SharePoint administrative URIs to trusted management hosts.
  • Enforce authentication and authorization checks on administrative endpoints at the reverse proxy or WAF layer.
  • Monitor and review SharePoint server logs for anomalous requests to administrative paths.
  • Isolate or upgrade end-of-life SharePoint 2007 and Search Server 2008 deployments.

Detection

  • Alert on unauthenticated HTTP requests to SharePoint administrative URIs such as /_admin/ and /_layouts/ paths.
  • Monitor for sudden spikes in server load or request volume correlated with administrative endpoint access.
  • Review SharePoint IIS logs for requests creating or modifying scripts or web part content from unexpected sources.
  • Correlate access to administrative URIs with source IPs outside expected management networks.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2008-4032 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2009-0557Microsoft Excel malformed record object code executionMicrosoft Excel and related Office components fail to properly handle a malformed record object in a crafted Excel file, allowing code injection. A r…KEVEPSS 53%analysed9.3CVE-2015-2558Microsoft excel vulnerabilityUse-after-free vulnerability in Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 20…EPSS 20%9.3CVE-2010-0257Microsoft excel code injection vulnerabilityMicrosoft Office Excel 2002 SP3 does not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted …EPSS 19%9.3CVE-2010-0260Microsoft excel code injection vulnerabilityHeap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel…EPSS 23%9.3CVE-2010-0261Microsoft excel memory buffer overflow vulnerabilityHeap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2 and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats…EPSS 23%9.3CVE-2010-0262Microsoft excel code injection vulnerabilityMicrosoft Office Excel 2007 SP1 and SP2 and Office 2004 for Mac do not properly parse the Excel file format, which allows remote attackers to execute…EPSS 21%9.3CVE-2010-0263Microsoft excel code injection vulnerabilityMicrosoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compati…EPSS 26%9.3CVE-2010-0264Microsoft excel code injection vulnerabilityMicrosoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format…EPSS 21%

Source: NIST National Vulnerability Database (record CVE-2008-4032), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.