CVE-2021-26855

Description

Microsoft Exchange Server Remote Code Execution Vulnerability

Risk Information

Base Score
9.1
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N/E:F/RL:O/RC:C
EPSS Score
Exploitation Probability
94.308

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2013 CU23 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU18 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU19 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU7 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU8 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU14 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU15 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU16 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU4 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU5 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU6 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2013 CU21 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2013 CU 22 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU12 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU13 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU17 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU3 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU10 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU11 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 RTM (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU1 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU2 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU8 (KB5000871)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU9 (KB5000871)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-30930Security Update For Exchange Server 2013 CU23 (KB5000871)
PATCH-30931Security Update For Exchange Server 2016 CU18 (KB5000871)
PATCH-30932Security Update For Exchange Server 2016 CU19 (KB5000871)
PATCH-30933Security Update For Exchange Server 2019 CU7 (KB5000871)
PATCH-30934Security Update For Exchange Server 2019 CU8 (KB5000871)
PATCH-31069Security Update For Exchange Server 2016 CU14 (KB5000871)
PATCH-31070Security Update For Exchange Server 2016 CU15 (KB5000871)
PATCH-31071Security Update For Exchange Server 2016 CU16 (KB5000871)
PATCH-31072Security Update For Exchange Server 2019 CU4 (KB5000871)
PATCH-31073Security Update For Exchange Server 2019 CU5 (KB5000871)
PATCH-31074Security Update For Exchange Server 2019 CU6 (KB5000871)
PATCH-31075Security Update For Exchange Server 2013 CU21 (KB5000871)
PATCH-31076Security Update For Exchange Server 2013 CU 22 (KB5000871)
PATCH-31077Security Update For Exchange Server 2016 CU12 (KB5000871)
PATCH-31078Security Update For Exchange Server 2016 CU13 (KB5000871)
PATCH-31079Security Update For Exchange Server 2016 CU17 (KB5000871)
PATCH-31080Security Update For Exchange Server 2019 CU3 (KB5000871)
PATCH-31081Security Update For Exchange Server 2016 CU10 (KB5000871)
PATCH-31082Security Update For Exchange Server 2016 CU11 (KB5000871)
PATCH-31083Security Update For Exchange Server 2019 RTM (KB5000871)
PATCH-31084Security Update For Exchange Server 2019 CU1 (KB5000871)
PATCH-31085Security Update For Exchange Server 2019 CU2 (KB5000871)
PATCH-31086Security Update For Exchange Server 2016 CU8 (KB5000871)
PATCH-31087Security Update For Exchange Server 2016 CU9 (KB5000871)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234