B
今週中
CISAは、Microsoft SharePointとMikroTik RouterOSの脆弱性が悪用されているとして、既知の悪用済み脆弱性 (KEV)…
📌 一言でいうと
CISAは、Microsoft SharePointとMikroTik RouterOSの脆弱性が悪用されているとして、既知の悪用済み脆弱性 (KEV) カタログに追加しました。SharePointの脆弱性 (CVE-2026-65660) は、権限を持つ攻撃者がネットワーク経由でリモートコード実行 (RCE) を行う可能性があります。また、MikroTik RouterOSの脆弱性 (CVE-2026-67279) は、認証されていないクライアントがセッションチャネルを開いて実行リクエストを送信できる可能性があります。
🔍該当判定
- 自社で『Microsoft SharePoint Server』をインストールして運用している
- 社内ネットワークのルーターに『MikroTik』社製の製品(RouterOS搭載機)を使用している
- 外部からアクセス可能な状態で SharePoint Server または MikroTik ルーターを公開している
上記いずれにも該当しない → 静観でOK
✅該当時の対応
対象製品の最新パッチを適用し、CISAのKEVカタログおよびベンダーのアドバイザリに従って速やかにアップデートを実施してください。
📧 メール案を見る (管理者向け)
⚠️ これは AI が生成した参考例です。配信前に必ず内容をご確認のうえ、貴社の状況に合わせて編集してご利用ください。実際の被害状況や自社の利用環境を踏まえた判断は、貴社のセキュリティ責任者にご確認ください。
件名: 【共有】Microsoft SharePoint および MikroTik RouterOS 脆弱性対応について
お疲れさまです。CISAより、以下の製品における脆弱性が実際に悪用されているとの報告がありましたので情報共有いたします。
■ 概要
- Microsoft SharePoint: CVE-2026-65660 (CVSS 8.8) リモートコード実行 (RCE) の可能性
- MikroTik RouterOS: CVE-2026-67279 (CVSS 6.9) 認証なしでのセッションチャネル作成および実行リクエスト送信の可能性
■ 影響範囲
- Microsoft Office SharePoint Server
- MikroTik RouterOS
■ 対応手順
1. 自社環境における対象製品のバージョンを確認してください。
2. ベンダーが提供する最新のセキュリティアップデートを適用してください。
3. 外部からアクセス可能なインターフェースの制限など、ネットワーク的な緩和策を検討してください。
■ 参考情報
- CISA Known Exploited Vulnerabilities (KEV) Catalog
- Microsoft / MikroTik 公式アドバイザリ
対応優先度: 高
対応期限: 速やかに
お疲れさまです。CISAより、以下の製品における脆弱性が実際に悪用されているとの報告がありましたので情報共有いたします。
■ 概要
- Microsoft SharePoint: CVE-2026-65660 (CVSS 8.8) リモートコード実行 (RCE) の可能性
- MikroTik RouterOS: CVE-2026-67279 (CVSS 6.9) 認証なしでのセッションチャネル作成および実行リクエスト送信の可能性
■ 影響範囲
- Microsoft Office SharePoint Server
- MikroTik RouterOS
■ 対応手順
1. 自社環境における対象製品のバージョンを確認してください。
2. ベンダーが提供する最新のセキュリティアップデートを適用してください。
3. 外部からアクセス可能なインターフェースの制限など、ネットワーク的な緩和策を検討してください。
■ 参考情報
- CISA Known Exploited Vulnerabilities (KEV) Catalog
- Microsoft / MikroTik 公式アドバイザリ
対応優先度: 高
対応期限: 速やかに
Subject: [Security Advisory] Vulnerabilities in Microsoft SharePoint and MikroTik RouterOS
Dear Team,
CISA has added the following vulnerabilities to the KEV catalog, indicating active exploitation in the wild.
■ Overview
- Microsoft SharePoint: CVE-2026-65660 (CVSS 8.8) - Potential for Remote Code Execution (RCE).
- MikroTik RouterOS: CVE-2026-67279 (CVSS 6.9) - Potential for unauthenticated session channel opening and exec requests.
■ Affected Products
- Microsoft Office SharePoint Server
- MikroTik RouterOS
■ Action Plan
1. Identify affected versions within the corporate environment.
2. Apply the latest security patches provided by the vendors immediately.
3. Review network access controls to limit exposure of these services to the public internet.
■ Reference
- CISA KEV Catalog
- Official vendor advisories
Priority: High
Deadline: Immediate
Dear Team,
CISA has added the following vulnerabilities to the KEV catalog, indicating active exploitation in the wild.
■ Overview
- Microsoft SharePoint: CVE-2026-65660 (CVSS 8.8) - Potential for Remote Code Execution (RCE).
- MikroTik RouterOS: CVE-2026-67279 (CVSS 6.9) - Potential for unauthenticated session channel opening and exec requests.
■ Affected Products
- Microsoft Office SharePoint Server
- MikroTik RouterOS
■ Action Plan
1. Identify affected versions within the corporate environment.
2. Apply the latest security patches provided by the vendors immediately.
3. Review network access controls to limit exposure of these services to the public internet.
■ Reference
- CISA KEV Catalog
- Official vendor advisories
Priority: High
Deadline: Immediate