CVE-2022-41082

8.0HIGH

Microsoft Exchange Server Remote Code Execution Vulnerability

Veröffentlicht: 10/3/2022Aktualisiert: 10/30/2025

CISA Bekannte Ausgenutzte Schwachstelle

Microsoft Exchange Server contains an unspecified vulnerability that allows for authenticated remote code execution. Dubbed "ProxyNotShell," this vulnerability is chainable with CVE-2022-41040 which allows for the remote code execution.

Erforderliche Maßnahme:

Apply updates per vendor instructions.

Fälligkeitsdatum:

2022-10-21

Bekannte Ransomware-Nutzung

Beschreibung

Microsoft Exchange Server Remote Code Execution Vulnerability

KI-AnalyseKI-gestützt

Betroffene Produkte

microsoftexchange_server
2013
microsoftexchange_server
2016
microsoftexchange_server
2016
microsoftexchange_server
2019
microsoftexchange_server
2019

Referenzen