VDB

msrc_CVE-2022-41040

msrc_CVE-2022-41040 PUBLISHED CVSS 8.800000190734863 HIGH

Risk Scores

CVSS v3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C

Affected Products

VendorProductVersions
Microsoft Exchange Server 2019 Cumulative Update 12 15.02.1118.020
Microsoft Exchange Server 2019 Cumulative Update 11 <15.02.0986.036
Microsoft Exchange Server 2016 Cumulative Update 23 15.01.2507.016
Microsoft Exchange Server 2019 Cumulative Update 12 <15.02.1118.020
Microsoft Exchange Server 2019 Cumulative Update 11 15.02.0986.036
Microsoft Exchange Server 2013 Cumulative Update 23 <15.00.1497.044
Microsoft Exchange Server 2016 Cumulative Update 23 <15.01.2507.016
Microsoft Exchange Server 2016 Cumulative Update 22 <15.01.2375.037
Microsoft Exchange Server 2013 Cumulative Update 23 15.00.1497.044
Microsoft Exchange Server 2016 Cumulative Update 22 15.01.2375.037

Timeline

  • Sep 13, 2022 CVE Published
  • Nov 8, 2022 CVE Updated
  • Mar 22, 2023 PoC Published
  • Sep 30, 2025 PoC Published
  • Feb 4, 2026 PoC Published
  • Apr 3, 2026 Security Advisory
  • Apr 3, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›