CVE-2021-31207
6.6MEDIUMMicrosoft Exchange Server Security Feature Bypass Vulnerability
Publicado: 5/11/2021Actualizado: 10/30/2025
Vulnerabilidad Explotada Conocida (CISA)
Microsoft Exchange Server contains an unspecified vulnerability that allows for security feature bypass.
Acción Requerida:
Apply updates per vendor instructions.
Fecha Límite:
2021-11-17
Uso de Ransomware Conocido
Descripción
Microsoft Exchange Server Security Feature Bypass Vulnerability
Análisis IAImpulsado por IA
Productos Afectados
microsoftexchange_server
2013
microsoftexchange_server
2016
microsoftexchange_server
2016
microsoftexchange_server
2019
microsoftexchange_server
2019
Referencias
- http://packetstormsecurity.com/files/163895/Microsoft-Exchange-ProxyShell-Remote-Code-Execution.htmlExploitThird Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31207PatchVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-21-819/Third Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/163895/Microsoft-Exchange-ProxyShell-Remote-Code-Execution.htmlExploitThird Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31207PatchVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-21-819/Third Party AdvisoryVDB Entry
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-31207US Government Resource