Количество 8
Количество 8
GHSA-5rg4-jqjp-6664
A remote code execution vulnerability exists in Microsoft Exchange server due to improper validation of cmdlet arguments.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the System user, aka 'Microsoft Exchange Server Remote Code Execution Vulnerability'.
CVE-2020-16875
<p>A remote code execution vulnerability exists in Microsoft Exchange server due to improper validation of cmdlet arguments.</p> <p>An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the System user. Exploitation of the vulnerability requires an authenticated user in a certain Exchange role to be compromised.</p> <p>The security update addresses the vulnerability by correcting how Microsoft Exchange handles cmdlet arguments.</p>
CVE-2020-16875
Microsoft Exchange Server Remote Code Execution Vulnerability
BDU:2020-04417
Уязвимость почтового сервера Microsoft Exchange Server, связанная с ошибками обработки объектов в памяти, позволяющая нарушителю выполнить произвольный код
CVE-2021-27065
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26858
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26857
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26855
Microsoft Exchange Server Remote Code Execution Vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-5rg4-jqjp-6664 A remote code execution vulnerability exists in Microsoft Exchange server due to improper validation of cmdlet arguments.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the System user, aka 'Microsoft Exchange Server Remote Code Execution Vulnerability'. | CVSS3: 7.2 | 47% Средний | около 4 лет назад | |
CVE-2020-16875 <p>A remote code execution vulnerability exists in Microsoft Exchange server due to improper validation of cmdlet arguments.</p> <p>An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the System user. Exploitation of the vulnerability requires an authenticated user in a certain Exchange role to be compromised.</p> <p>The security update addresses the vulnerability by correcting how Microsoft Exchange handles cmdlet arguments.</p> | CVSS3: 8.4 | 47% Средний | почти 6 лет назад | |
CVE-2020-16875 Microsoft Exchange Server Remote Code Execution Vulnerability | CVSS3: 8.4 | 47% Средний | почти 6 лет назад | |
BDU:2020-04417 Уязвимость почтового сервера Microsoft Exchange Server, связанная с ошибками обработки объектов в памяти, позволяющая нарушителю выполнить произвольный код | CVSS3: 7.2 | 47% Средний | почти 6 лет назад | |
CVE-2021-27065 Microsoft Exchange Server Remote Code Execution Vulnerability | CVSS3: 7.8 | 100% Критический | больше 5 лет назад | |
CVE-2021-26858 Microsoft Exchange Server Remote Code Execution Vulnerability | CVSS3: 7.8 | 90% Высокий | больше 5 лет назад | |
CVE-2021-26857 Microsoft Exchange Server Remote Code Execution Vulnerability | CVSS3: 7.8 | 94% Критический | больше 5 лет назад | |
CVE-2021-26855 Microsoft Exchange Server Remote Code Execution Vulnerability | CVSS3: 9.1 | 100% Критический | больше 5 лет назад |
Уязвимостей на страницу