VDB
BDU%3A2024-01319
BDU%3A2024-01319
PUBLISHED
CVSS 10 CRITICAL
Уязвимость почтового сервера Microsoft Exchange Server, связанная с утечкой учетных данных NTLM, позволяющая нарушителю повысить свои привилегии
Risk Scores
CVSS 2.0
10
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft Corp | Microsoft Exchange Server |
Timeline
- Feb 15, 2024 CVE Published
- Feb 16, 2024 CVE Updated
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21410 url
- https://thehackernews.com/2024/02/critical-exchange-server-flaw-cve-2024.html url
- https://www.cybersecurity-help.cz/vdb/SB2024021336 url
- https://www.bleepingcomputer.com/news/security/microsoft-new-critical-exchange-bug-exploited-as-zero-day/ url
- https://microsoft.github.io/CSS-Exchange/Security/ExchangeExtendedProtectionManagement advisory