A reported 163,266 ZoomEye matches are not 163,266 confirmed vulnerable SharePoint servers. The count is an internet-search snapshot, while CVE-2026-65660 is a code-injection flaw that the Canadian Centre for Cyber Security says could let an authenticated attacker execute arbitrary code on a vulnerable SharePoint Server. The Centre reported active exploitation on 24 September 2026. These are related warnings, but the match count does not establish which servers are affected or compromised.
What the 163,266 figure actually counts
A DEV Community article reports that its author queried ZoomEye International on 3 October 2026 with app="Microsoft SharePoint" and sub_type=all, covering devices and websites. The reported 163,266 is the total number of matching assets, not the number of records retrieved. DEV Community report
That is a fingerprint-search result: it indicates assets matched the query, not that every result is a verified SharePoint installation running an affected, unpatched build. The report itself cautions that a match does not confirm an affected build or exploitability. No validated count of vulnerable builds is provided.
What CVE-2026-65660 means
The Canadian Centre for Cyber Security classifies CVE-2026-65660 as improper control of code generation (CWE-94), or code injection. It says an authenticated attacker could execute arbitrary code on a vulnerable SharePoint Server. In an alert dated 24 September 2026, the Centre said it was aware of active exploitation. Canadian Centre for Cyber Security alerts and advisories
#1 Best Overall
- A FIDO security key with PUF technology provides a unique, hardware-rooted trust anchor that resists tampering and cyber attacks, offering stronger security than conventional designs.
- FIDO2 Certified Protection – Enjoy phishing-resistant security with FIDO2 certification, ensuring top-tier account safety across Windows, macOS, Linux, iOS iOS, Android and more.
- Easy to use & Portable – Designed with a compact USB-C interface, Clife key fits easily on your keychain for secure access anywhere. Simply plug in and authenticate with ease.
- Universal Compatibility – Works seamlessly with hundreds of FIDO2/U2F compliant services, including popular cloud, email, and social platforms.
- Backup recommended – To ensure continuous access, register a backup Clife security key as a spare in case your primary key is lost.
“Authenticated” means the attack described requires access as an authenticated user; the retrieved Centre alert text does not establish the exact minimum role or permission. It is therefore not enough to conclude that any ordinary user account is sufficient. The specific claim that the flaw needs only a low-privilege user account requires confirmation against Microsoft’s full advisory.
Why the count is not a vulnerability or compromise total
A public-facing fingerprint match and a successfully exploitable server are different things. To determine risk for a particular asset, an organization needs to verify that it is a SharePoint Server, identify its version and build and whether it is patched, assess whether vulnerable functionality is reachable, and establish the authentication and privilege conditions. Evidence of compromise is a separate question again. The exposure report does not provide these checks for its matches, and the Centre alert excerpt does not give the full fixed-build matrix.
Rank #2
- [SEAMLESS REPLACEMENT] This key replacement part fits OEM numbers like EK333 and 1108 U35 perfectly, ensuring an effortless integration with your current locks.
- [MULTIPLE APPLICATIONS] for use in Lock Cylinder and EMK systems, these keys are perfect for enhancing the security of network cabinets.
- [ MATERIALS] Made from strong, erosion-resistant metal that ensures longevity and consistent to your cabinets without fail.
- [ AND PLAY INSTALLATION] Designed for straightforward installation without any modifications needed, ensuring a hassle-free experience.
- [VALUE PACK OF SIX KEYS] Comes with 6 keys in each set, providing you plenty of extras for different uses or sharing among colleagues, keeping you well-equipped at all times.
- Fingerprint observation: a query match, not a verified affected installation.
- Build and patch state: must be checked against Microsoft’s advisory and the server’s installed updates.
- Reachability: internet exposure and access to management interfaces affect the attack surface.
- Access requirements: the Centre confirms an authenticated attacker, but the minimum account privilege is not specified in its retrieved alert text.
- Compromise evidence: cannot be inferred from a fingerprint match or vulnerability status alone.
What SharePoint administrators should do
Use Microsoft’s current advisory to determine affected versions and fixed builds before selecting a patch; the available Centre alert text does not establish those version-specific details. CERT-EU recommends immediately updating affected SharePoint servers, rotating credentials for assets that may have been exposed to the internet, and assessing systems for compromise. CERT-EU security advisories
The Canadian Centre recommends reducing the attack surface by restricting or eliminating direct internet exposure where possible and limiting access to SharePoint Central Administration and other management interfaces. Canadian Centre for Cyber Security alert AL26-023
Rank #3
- 【Strong Material】The L handle door lock is made of high quality zinc alloy with strong structure, not only has high strength that not easy to break, but also wear-resistant and corrosion-resistant, not easy to rust. So this L handle door lock stands up to long time use and storage
- 【Wide Application】This cabinet door handle lock has wide applicability and suitable for a wide range of equipment or cabinets that require locking. Such as electrical cabinets, filing cabinets, enclosures, network and server cabinets, sliding doors, trailer doors, switchgear, control cabinets, network cabinets, AE boxes, GGD cabinets, and other industrial cabinets
- 【Safe and Reliable】This L handle door lock is designed to be installed on some electrical equipment cabinets to prevent strangers from unauthorised unlocking, to ensure the safety and proper functioning of the equipment. It can also be installed in cabinets containing dangerous knives or tools, to prevent accidents from children playing
- 【Easy To Use】The T handle door lock is easy to install and use, no need for complicated tricks and tools. The door lock has a reliable locking structure, which can provide better anti-theft function, effectively prevent others from intruding and provide security for your equipment
- 【Product Information】We have four models of locking latch to choose from, in chrome and black, with and without keys. The unique metal texture with a smooth surface makes the latch simple and stylish, which can be compatible with a wide range of equipment cabinet door styles. Please confirm the model when purchasing
- Verify and update: identify your SharePoint Server builds and apply the update Microsoft identifies for each affected build.
- Reduce exposure: restrict or remove direct internet access where possible, and limit access to Central Administration and other management interfaces.
- Rotate credentials where exposure may have occurred: CERT-EU specifically recommends this for assets that may have been exposed to the internet.
- Assess for compromise: investigate potentially exposed systems rather than treating patching alone as proof that no intrusion occurred.
CERT-EU’s July advisory also discusses other SharePoint vulnerabilities, including CVE-2026-50522; those are distinct from CVE-2026-65660 and should not be conflated. CERT-EU security advisories
Quick Recap
Best Value
- NPN:7526050 40007009934
Rank #4
- MPN: 3524,2532000
- For SZ Series
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

