Microsoft Exchange Server 2016 Cumulative Update 22 vulnerabilities

25 known vulnerabilities affecting microsoft/microsoft_exchange_server_2016_cumulative_update_22.

Total CVEs
25
CISA KEV
4
actively exploited
Public exploits
3
Exploited in wild
5
Severity breakdown
CRITICAL5HIGH13MEDIUM7

Vulnerabilities

Page 1 of 2
CVE-2022-41080CRITICALCVSS 9.8KEV≥ 15.0.0, < 15.01.2375.0372022-11-09
CVE-2022-41080 [HIGH] CVE-2022-41080: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-41078HIGHCVSS 8.0≥ 15.0.0, < 15.01.2375.0372022-11-09
CVE-2022-41078 [HIGH] Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability
cvelistv5
CVE-2022-41123HIGHCVSS 7.8≥ 15.0.0, < 15.01.2375.0372022-11-09
CVE-2022-41123 [HIGH] CVE-2022-41123: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-41079HIGHCVSS 8.0≥ 15.0.0, < 15.01.2375.0372022-11-09
CVE-2022-41079 [HIGH] Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability
cvelistv5
CVE-2022-41040HIGHCVSS 8.8KEVPoC≥ 15.0.0, < 15.01.2375.0372022-10-03
CVE-2022-41040 [HIGH] CWE-918 CVE-2022-41040: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-41082HIGHCVSS 8.0KEVPoC≥ 15.0.0, < 15.01.2375.0372022-10-03
CVE-2022-41082 [HIGH] CWE-502 CVE-2022-41082: Microsoft Exchange Server Remote Code Execution Vulnerability Microsoft Exchange Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-24516HIGHCVSS 8.0≥ 15.0.0, < 15.01.2375.0322022-08-09
CVE-2022-24516 [HIGH] CVE-2022-24516: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-21980HIGHCVSS 8.0≥ 15.0.0, < 15.01.2375.0322022-08-09
CVE-2022-21980 [HIGH] CVE-2022-21980: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-24477HIGHCVSS 8.0≥ 15.0.0, < 15.01.2375.0322022-08-09
CVE-2022-24477 [HIGH] CVE-2022-24477: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-34692MEDIUMCVSS 5.3≥ 15.0.0, < 15.01.2375.0312022-08-09
CVE-2022-34692 [MEDIUM] CWE-200 CVE-2022-34692: Microsoft Exchange Server Information Disclosure Vulnerability Microsoft Exchange Server Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-30134MEDIUMCVSS 4.3≥ 15.0.0, < 15.01.2375.0322022-08-09
CVE-2022-30134 [MEDIUM] CVE-2022-30134: Microsoft Exchange Server Information Disclosure Vulnerability Microsoft Exchange Server Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-21979MEDIUMCVSS 5.7≥ 15.0.0, < 15.01.2375.0322022-08-09
CVE-2022-21979 [MEDIUM] CVE-2022-21979: Microsoft Exchange Server Information Disclosure Vulnerability Microsoft Exchange Server Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-21978HIGHCVSS 8.2≥ 15.0.0, < 15.01.2375.0282022-05-10
CVE-2022-21978 [HIGH] CVE-2022-21978: Microsoft Exchange Server Elevation of Privilege Vulnerability Microsoft Exchange Server Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2022-23277HIGHCVSS 8.8≥ 15.0.0, < 15.01.2375.0242022-03-09
CVE-2022-23277 [HIGH] CVE-2022-23277: Microsoft Exchange Server Remote Code Execution Vulnerability Microsoft Exchange Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-24463MEDIUMCVSS 6.5≥ 15.0.0, < 15.01.2375.0242022-03-09
CVE-2022-24463 [MEDIUM] Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability
cvelistv5
CVE-2022-21846CRITICALCVSS 9.0≥ 15.0.0, < 15.01.2375.0182022-01-11
CVE-2022-21846 [CRITICAL] CVE-2022-21846: Microsoft Exchange Server Remote Code Execution Vulnerability Microsoft Exchange Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-21855CRITICALCVSS 9.0≥ 15.0.0, < 15.01.2375.0182022-01-11
CVE-2022-21855 [CRITICAL] CVE-2022-21855: Microsoft Exchange Server Remote Code Execution Vulnerability Microsoft Exchange Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-21969CRITICALCVSS 9.0≥ 15.0.0, < 15.01.2375.0182022-01-11
CVE-2022-21969 [CRITICAL] CVE-2022-21969: Microsoft Exchange Server Remote Code Execution Vulnerability Microsoft Exchange Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-42321HIGHCVSS 8.8KEV≥ 15.0.0, < 15.01.2375.0172021-11-10
CVE-2021-42321 [HIGH] CVE-2021-42321: Microsoft Exchange Server Remote Code Execution Vulnerability Microsoft Exchange Server Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-41349MEDIUMCVSS 6.5ExploitedPoC≥ 15.0.0, < 15.01.2375.0172021-11-10
CVE-2021-41349 [MEDIUM] Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability Microsoft Exchange Server Spoofing Vulnerability
cvelistv5