CVE-2018-8153

Description

A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web Access (OWA) fails to properly handle web requests, aka Microsoft Exchange Spoofing Vulnerability. This affects Microsoft Exchange Server.

Risk Information

Base Score
5.4
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
EPSS Score
Exploitation Probability
1.47

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Exchange Memory Corruption Vulnerability for Exchange Server 2013 CU19 (KB4092041)Windows
Microsoft Exchange Memory Corruption Vulnerability for Exchange Server 2013 CU20 (KB4092041)Windows
Microsoft Exchange Memory Corruption Vulnerability for Exchange Server 2013 SP1 (KB4092041)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-24635Security Update For Exchange Server 2013 CU19 (KB4092041)
PATCH-24636Security Update For Exchange Server 2013 CU20 (KB4092041)
PATCH-24634Security Update For Exchange Server 2013 SP1 (KB4092041)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234