CVE-2019-1136

Description

An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka Microsoft Exchange Server Elevation of Privilege Vulnerability.

Risk Information

Base Score
8.1
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
5.403

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Exchange Information Disclosure Vulnerability For Exchange Server 2013 CU23 (KB4509409)Windows
Microsoft Exchange Information Disclosure Vulnerability For Exchange Server 2016 CU12 (KB4509409)Windows
Microsoft Exchange Information Disclosure Vulnerability For Exchange Server 2016 CU13 (KB4509409)Windows
Microsoft Exchange Information Disclosure Vulnerability For Exchange 2010 SP3 (KB4509410)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-27157Security Update For Exchange Server 2013 CU23 (KB4509409)
PATCH-27158Security Update For Exchange Server 2016 CU12 (KB4509409)
PATCH-27159Security Update For Exchange Server 2016 CU13 (KB4509409)
PATCH-27156Security Update Rollup 29 For Exchange 2010 SP3 (KB4509410)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234