Description
Microsoft Exchange Server Remote Code Execution Vulnerability
In plain language
AI Worth attentionThis affects unpatched Microsoft Exchange Server 2016 CU23 and 2019 CU12 or CU13, and a typical small business using them should schedule the available update promptly.
Authenticated, adjacent-network remote code execution in Microsoft Exchange Server through unsafe deserialization (CWE-502), affecting the listed unpatched cumulative-update builds.
What to do now
- Check whether your Microsoft Exchange Server is 2016 CU23, 2019 CU12, or 2019 CU13, and note its installed build number.
- Update Exchange Server 2016 CU23 to 15.01.2507.032, Exchange Server 2019 CU13 to 15.02.1258.025, or Exchange Server 2019 CU12 to 15.02.1118.037.
- Confirm the installed build after updating and investigate unexpected use of Exchange accounts.
CVSS Vector Breakdown
AV:AAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Attack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
3 techniquesReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2023-36756 and every CVE in our database. Create a free account — no credit card required.
Create Free Account