CVE-2021-33768

Description

Microsoft Exchange Server Elevation of Privilege Vulnerability

Risk Information

Base Score
8.0
MODERATE
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.207

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU20 (KB5004779)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2016 CU21 (KB5004779)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU9 (KB5004780)Windows
Microsoft Exchange Server Remote Code Execution Vulnerability For Exchange Server 2019 CU10 (KB5004780)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-31807Security Update For Exchange Server 2016 CU20 (KB5004779) (CVE-2021-31196) (CVE-2021-31206) (CVE-2021-33768)
PATCH-31808Security Update For Exchange Server 2016 CU21 (KB5004779) (CVE-2021-31196) (CVE-2021-31206) (CVE-2021-33768)
PATCH-31809Security Update For Exchange Server 2019 CU9 (KB5004780) (CVE-2021-31196) (CVE-2021-31206) (CVE-2021-33768)
PATCH-31811Security Update For Exchange Server 2019 CU10 (KB5004780) (CVE-2021-31196) (CVE-2021-31206) (CVE-2021-33768)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234