Risk | High |
Patch available | YES |
Number of vulnerabilities | 2 |
CVE-ID | CVE-2023-32031 CVE-2023-28310 |
CWE-ID | CWE-502 CWE-20 |
Exploitation vector | Network |
Public exploit | N/A |
Vulnerable software Subscribe |
Microsoft Exchange Server Server applications / Mail servers |
Vendor | Microsoft |
Security Bulletin
This security bulletin contains information about 2 vulnerabilities.
EUVDB-ID: #VU77240
Risk: High
CVSSv3.1:
CVE-ID: CVE-2023-32031
CWE-ID:
Exploit availability:
DescriptionThe vulnerability allows a remote user to execute arbitrary code on the target system.
The vulnerability exists due to insecure input validation when processing serialized data within the Command class. A remote user can pass specially crafted data to the application and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationInstall updates from vendor's website.
Vulnerable software versionsMicrosoft Exchange Server: 2016 CU22 Nov22SU 15.01.2375.037 - 2019 RTM Mar21SU 15.02.0221.018
Fixed software versionsCPE2.3 External links
http://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2023-32031
http://www.zerodayinitiative.com/advisories/ZDI-23-881/
Q & A
Can this vulnerability be exploited remotely?
How the attacker can exploit this vulnerability?
Is there known malware, which exploits this vulnerability?
EUVDB-ID: #VU77238
Risk: Medium
CVSSv3.1:
CVE-ID: CVE-2023-28310
CWE-ID:
Exploit availability:
DescriptionThe vulnerability allows a remote user to execute arbitrary code on the system.
The vulnerability exists due to insufficient validation of user-supplied input. A remote authenticated user can pass specially crafted input to the server and execute arbitrary code via a PowerShell remoting session.
MitigationInstall updates from vendor's website.
Vulnerable software versionsMicrosoft Exchange Server: 2016 CU22 Nov22SU 15.01.2375.037 - 2019 RTM Mar21SU 15.02.0221.018
Fixed software versionsCPE2.3 External links
http://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2023-28310
Q & A
Can this vulnerability be exploited remotely?
How the attacker can exploit this vulnerability?
Is there known malware, which exploits this vulnerability?