KB5002905: what it fixes and who gets it
KB5002905 is a security update from Microsoft's August 2026 release for Microsoft SharePoint Enterprise Server 2016.
Microsoft data read
Should you install it?
Yes. It closes holes Microsoft rates Critical, the most serious rating it uses. Windows Update installs it automatically on supported home PCs.
If the installation fails or the PC misbehaves afterwards, note the exact error code first: the fix depends on it. Our update troubleshooting guides are linked on this page.
Security fixes in KB5002905
| CVE | Type | CVSS | Severity |
|---|---|---|---|
| CVE-2026-62827Microsoft SharePoint Server Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Critical |
| CVE-2026-64921Microsoft SharePoint Server Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Critical |
| CVE-2026-70306Microsoft Office SharePoint Spoofing Vulnerability | Spoofing | 9.3 | Important |
| CVE-2026-63514Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-64901Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-65658Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-65660Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-65663Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-66805Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-66808Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important |
| CVE-2026-70324Microsoft SharePoint Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Important |
| CVE-2026-63520Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Important |
| CVE-2026-64900Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 7.3 | Important |
| CVE-2026-58639Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important |
| CVE-2026-62837Microsoft SharePoint Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important |
| CVE-2026-62839Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important |
| CVE-2026-63512Microsoft SharePoint Server Tampering Vulnerability | Tampering | 6.5 | Important |
| CVE-2026-63516Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important |
| CVE-2026-62917Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important |
| CVE-2026-64897Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important |
| CVE-2026-64902Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important |
| CVE-2026-64916Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important |
| CVE-2026-64922Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important |
Questions and experiences
Ask about this page: members and our editors answer. Reading is open; writing needs a free account.
0 comments
…