Microsoft Exchange Server vulnerabilities
207 known vulnerabilities affecting microsoft/exchange_server.
Total CVEs
207
CISA KEV
19
actively exploited
Public exploits
28
Exploited in wild
19
Severity breakdown
CRITICAL24HIGH84MEDIUM93LOW6
Vulnerabilities
Page 4 of 11
CVE-2021-28483CRITICALCVSS 9.0v2013v2016+1 more2021-04-13
CVE-2021-28483 [CRITICAL] CVE-2021-28483: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-28480CRITICALCVSS 9.8PoCv2013v2016+1 more2021-04-13
CVE-2021-28480 [CRITICAL] CVE-2021-28480: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-28481CRITICALCVSS 9.8PoCv2013v2016+1 more2021-04-13
CVE-2021-28481 [CRITICAL] CVE-2021-28481: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-28482HIGHCVSS 8.8v2013v2016+1 more2021-04-13
CVE-2021-28482 [HIGH] CVE-2021-28482: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-26855CRITICALCVSS 9.8KEVPoCv2013v2016+1 more2021-03-03
CVE-2021-26855 [CRITICAL] CWE-918 CVE-2021-26855: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-26857HIGHCVSS 7.8KEVv2010v2013+2 more2021-03-03
CVE-2021-26857 [HIGH] CWE-502 CVE-2021-26857: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-26412HIGHCVSS 7.2v2013v2016+1 more2021-03-03
CVE-2021-26412 [HIGH] CVE-2021-26412: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-26854HIGHCVSS 7.2v2013v2016+1 more2021-03-03
CVE-2021-26854 [HIGH] CVE-2021-26854: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-27065HIGHCVSS 7.8KEVPoCv2013v2016+1 more2021-03-03
CVE-2021-27065 [HIGH] CWE-22 CVE-2021-27065: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-26858HIGHCVSS 7.8KEVv2010v2013+2 more2021-03-03
CVE-2021-26858 [HIGH] CVE-2021-26858: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-27078HIGHCVSS 7.2v2013v2016+1 more2021-03-03
CVE-2021-27078 [HIGH] CVE-2021-27078: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2021-1730MEDIUMCVSS 5.4v2016v20192021-02-25
CVE-2021-1730 [MEDIUM] CVE-2021-1730: <p>A spoofing vulnerability exists in Microsoft Exchange Server which could result in an attack that
A spoofing vulnerability exists in Microsoft Exchange Server which could result in an attack that would allow a malicious actor to impersonate the user.
This update addresses this vulnerability.
To prevent these types of attacks, Microsoft recommends customers to download inline images from different DNSdomains than the rest of OWA. Please see further instruc
nvd
CVE-2020-17142CRITICALCVSS 9.1v2013v2016+1 more2020-12-10
CVE-2020-17142 [CRITICAL] CVE-2020-17142: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
nvd
CVE-2020-17132CRITICALCVSS 9.1v2013v2016+1 more2020-12-10
CVE-2020-17132 [CRITICAL] CVE-2020-17132: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
nvd
CVE-2020-17117HIGHCVSS 7.2v2013v2016+1 more2020-12-10
CVE-2020-17117 [HIGH] CVE-2020-17117: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
nvd
CVE-2020-17143HIGHCVSS 8.8v2013v2016+1 more2020-12-10
CVE-2020-17143 [HIGH] CVE-2020-17143: Microsoft Exchange Server Information Disclosure Vulnerability
Microsoft Exchange Server Information Disclosure Vulnerability
nvd
CVE-2020-17144HIGHCVSS 8.8KEVv20102020-12-10
CVE-2020-17144 [HIGH] CWE-502 CVE-2020-17144: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
nvd
CVE-2020-17141HIGHCVSS 8.4v2016v20192020-12-10
CVE-2020-17141 [HIGH] CVE-2020-17141: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
nvd
CVE-2020-17084HIGHCVSS 8.8v2013v2016+1 more2020-11-11
CVE-2020-17084 [HIGH] CWE-120 CVE-2020-17084: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd
CVE-2020-17083MEDIUMCVSS 5.4v2013v2016+1 more2020-11-11
CVE-2020-17083 [MEDIUM] CWE-79 CVE-2020-17083: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
nvd