SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild

Cybersecurity Threats on the Rise: SharePoint and MikroTik Vulnerabilities Exploited in the Wild

A double whammy of security threats has emerged, with hackers actively exploiting critical vulnerabilities in Microsoft’s SharePoint platform and MikroTik RouterOS. The attacks are putting organizations and individuals at risk, highlighting the importance of robust cybersecurity measures.

The exploits take advantage of previously unknown flaws in SharePoint, a widely used collaboration tool, and MikroTik RouterOS, a network operating system. Cybersecurity researchers have confirmed that attackers can use these vulnerabilities to gain remote code execution (RCE) on affected systems. This means that hackers can execute malicious code on compromised servers, potentially leading to data breaches, system takeovers, or even ransomware attacks.

SharePoint and MikroTik RouterOS are both popular solutions used by organizations worldwide. According to Microsoft’s own estimates, over 100 million users interact with SharePoint daily. Similarly, MikroTik RouterOS is a widely deployed network operating system, powering millions of routers globally. The sheer scale of affected systems makes this a significant security concern.

The attacks are made possible due to the way these systems handle user permissions and authentication. In essence, an attacker can exploit cross-domain privilege escalation vulnerabilities to gain elevated access rights on target servers. This allows them to move laterally within a network, compromising additional assets as they go. The goal is often to establish a foothold in the victim’s network, from which further attacks can be launched.

The exploitation of these vulnerabilities demonstrates the growing threat posed by advanced attackers. These cybercriminals use sophisticated tactics to evade detection and maximize their impact. As organizations continue to rely on cloud-based services and interconnected systems, the risk of such attacks increases. It is essential for IT teams to remain vigilant and proactive in addressing these threats.

To mitigate this risk, cybersecurity experts recommend implementing robust vulnerability management practices, including regular software updates, patching, and monitoring. Additionally, users should exercise caution when interacting with SharePoint and other cloud-based services, being mindful of potential security risks associated with cross-domain privilege escalation. By staying informed and taking proactive steps to secure their systems, organizations can reduce the likelihood of falling victim to these attacks.


Source: The Hacker News — 2026-09-26