Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Microsoft Exchange Server 2016 Cumulative Update 23 — Vulnerabilities & Security Advisories 49

All 49 CVE vulnerabilities found in Microsoft Exchange Server 2016 Cumulative Update 23, with AI-generated Chinese analysis, references, and POCs.

This page catalogs known security weaknesses affecting Microsoft Exchange Server 2016 Cumulative Update 23, categorized by common weakness types. It aggregates data on various vulnerability classes, including remote code execution, authentication bypasses, and information disclosure flaws that have been identified within this specific software release. The content covers vulnerabilities reported and published between early 2023 and mid-2024, providing a comprehensive historical view of security issues relevant to this version of the Exchange Server platform. Users can track Microsoft’s official security advisories to stay informed about patch availability and remediation steps for each discovered flaw. This resource allows security professionals to understand the broader context of specific weakness classes by seeing how they manifest in different components of the Exchange ecosystem. Additionally, administrators can look up the product’s vulnerability history to assess the cumulative risk profile and prioritize updates based on severity and exploitability. By centralizing this information, the page facilitates better risk management and compliance auditing for organizations relying on Exchange Server 2016. The data is sourced from public vulnerability databases and vendor disclosures to ensure accuracy and timeliness. This overview serves as a critical reference for IT security teams aiming to maintain the integrity and confidentiality of their messaging infrastructure against evolving cyber threats.

Vendor: Microsoft

CVE IDTitleCVSSSeverityPublished
CVE-2024-21410 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-287 9.8 Critical2024-02-13
CVE-2023-36035 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-11-14
CVE-2023-36039 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-11-14
CVE-2023-36439 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-11-14
CVE-2023-36756 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-09-12
CVE-2023-36757 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-09-12
CVE-2023-38181 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.8 High2023-08-08
CVE-2023-38182 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-08-08
CVE-2023-35388 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-08-08
CVE-2023-21709 Microsoft Exchange Server Elevation of Privilege Vulnerability CWE-307 9.8 Critical2023-08-08
CVE-2023-38185 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-23 8.8 High2023-08-08
CVE-2023-35368 Microsoft Exchange Remote Code Execution Vulnerability CWE-20 8.8 High2023-08-08
CVE-2023-28310 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.0 High2023-06-14
CVE-2023-21710 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 7.2 High2023-02-14
CVE-2023-21707 Microsoft Exchange Server Remote Code Execution Vulnerability CWE-502 8.8 High2023-02-14
CVE-2023-21761 Microsoft Exchange Server Information Disclosure Vulnerability CWE-918 7.5 High2023-01-10
CVE-2023-21745 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-01-10
CVE-2023-21762 Microsoft Exchange Server Spoofing Vulnerability CWE-502 8.0 High2023-01-10
CVE-2022-34692 Microsoft Exchange Server Information Disclosure Vulnerability 5.3 Medium2022-08-09

All 49 known CVE vulnerabilities affecting Microsoft Exchange Server 2016 Cumulative Update 23 with full Chinese analysis, references, and POCs where available.