Unrestricted file upload vulnerability in the Document Conversions Launcher Service in Microsoft Office SharePoint Server 2007 SP2, when the Document Conversions Load Balancer Service is enabled, allows remote attackers to execute arbitrary code via a crafted SOAP request to TCP port 8082, aka "Malformed Request Code Execution Vulnerability."
Use Microsoft vendor hub and Sharepoint Server product page to widen CVE-2010-3964 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-20963, CVE-2026-32201 and CVE-2026-26114 for nearby disclosures in the same product family. Additional editorial context is available in Weekly Security Roundup: Navigating the April 2026 Threat Landscape and Critical Framework Exploits.