CVE-2021-31171: medium-severity vulnerability in Microsoft SharePoint Enterprise Server 2016
Microsoft SharePoint Information Disclosure Vulnerability
Published · Updated
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 4.1epss 0.6%
exploitation probability
0.6%top 50% of all CVEs
observed exploitation
nono source reports it
Microsoft SharePoint Information Disclosure Vulnerability
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
Affected products
Microsoft · Microsoft SharePoint Enterprise Server 2016Microsoft · Microsoft SharePoint Foundation 2013 Service Pack 1Microsoft · Microsoft SharePoint Server 2019Related CVEs — Microsoft SharePoint Enterprise Server 2016
In the same product, most dangerous first.
CVE-2025-53770CRITICALMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 100.0%KEVCVE-2025-49704HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 100.0%KEVCVE-2023-29357CRITICALMicrosoft SharePoint Server Elevation of Privilege VulnerabilityEPSS 100.0%KEVCVE-2025-49706MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 99.1%KEVCVE-2023-24955HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 85.0%KEVCVE-2026-55040CRITICALMicrosoft SharePoint Server Security Feature Bypass VulnerabilityEPSS 69.5%KEV