Microsoft Exchange Server是美国微软(Microsoft)公司的一套电子邮件服务程序。它提供邮件存取、储存、转发,语音邮件,邮件过滤筛选等功能。 Microsoft Exchange Server存在安全漏洞。攻击者利用该漏洞可以远程执行代码。以下产品和版本受到影响:Microsoft Exchange Server 2019 Cumulative Update 14,Microsoft Exchange Server 2019 Cumulative Update 13,Micro
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Exchange Server 2019 Cumulative Update 14 | 15.02.0 ~ 15.02.1258.034 | - |
|
| Microsoft | Microsoft Exchange Server 2019 Cumulative Update 13 | 15.02.0 ~ 15.02.1544.011 | - |
|
| Microsoft | Microsoft Exchange Server 2016 Cumulative Update 23 | 15.01.0 ~ 15.01.2507.039 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | exploit for CVE-2024-26198 Microsoft Exchange Remote Code Execution (RCE) | https://github.com/MrCyberSec/CVE-2024-26198-Exchange-RCE | POC Details |
| 2 | CVE-2024-26198 POC RCE Microsoft Exchange Server | https://github.com/babywalkerenc/CVE-2024-26198-POC | POC Details |
| 3 | None | https://github.com/MrSecby/CVE-2024-26198-Exchange-RCE | POC Details |
| 4 | None | https://github.com/AlexDoe11/CVE-2024-26198-Exchange-RCE | POC Details |
| CVE-2024-21334 | 9.8 CRITICAL | Open Management Infrastructure (OMI) Remote Code Execution Vulnerability |
| CVE-2024-21400 | 9.0 CRITICAL | Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerabi |
| CVE-2024-21441 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21411 | 8.8 HIGH | Skype for Consumer Remote Code Execution Vulnerability |
| CVE-2024-26162 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2024-26166 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21440 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2024-21435 | 8.8 HIGH | Windows OLE Remote Code Execution Vulnerability |
| CVE-2024-26161 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-26164 | 8.8 HIGH | Microsoft Django Backend for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-26159 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2024-21450 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-21451 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2024-21444 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2024-26165 | 8.8 HIGH | Visual Studio Code Elevation of Privilege Vulnerability |
| CVE-2024-21407 | 8.1 HIGH | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2024-21330 | 7.8 HIGH | Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability |
| CVE-2024-21418 | 7.8 HIGH | Software for Open Networking in the Cloud (SONiC) Elevation of Privilege Vulnerability |
| CVE-2024-26173 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2024-26176 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
Showing top 20 of 59 CVEs. View all on vendor page → →
No comments yet