Описание
An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." This affects Microsoft Exchange Server.
Ссылки
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_8:*:*:*:*:*:*
cpe:2.3:a:microsoft:exchange_server:2016:cumulative_update_9:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.01349
Низкий
5.4 Medium
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 5.4
github
больше 3 лет назад
An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." This affects Microsoft Exchange Server.
CVSS3: 7.8
msrc
больше 4 лет назад
Microsoft Exchange Server Remote Code Execution Vulnerability
CVSS3: 7.8
msrc
больше 4 лет назад
Microsoft Exchange Server Remote Code Execution Vulnerability
CVSS3: 7.8
msrc
больше 4 лет назад
Microsoft Exchange Server Remote Code Execution Vulnerability
EPSS
Процентиль: 79%
0.01349
Низкий
5.4 Medium
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-79