CVE-2020-17141

Severity
8.4HIGH
EPSS
29.2%
top 3.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 10
Latest updateMay 24

Description

Microsoft Exchange Remote Code Execution Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:HExploitability: 1.7 | Impact: 6.0

Affected Packages5 packages

Patches

🔴Vulnerability Details

4
GHSA
GHSA-5rwf-4w32-44c4: , aka 'Microsoft Exchange Remote Code Execution Vulnerability'2022-05-24
CVEList
Microsoft Exchange Remote Code Execution Vulnerability2020-12-09
GHSA
RCE in XWiki2020-10-16
GHSA
Users with SCRIPT right can execute arbitrary code in XWiki2020-09-10

🔍Detection Rules

1
Suricata
ET EXPLOIT Microsoft Exchange Server Exploitation (CVE-2020-17141)2021-01-08

📋Vendor Advisories

1
Microsoft
Microsoft Exchange Remote Code Execution Vulnerability2020-12-08
CVE-2020-17141 (HIGH CVSS 8.4) | Microsoft Exchange Remote Code Exec | cvebase.io