ID:5223 - Exploit for Input validation error in Microsoft Exchange Server - CVE-2021-27065
Published: March 18, 2021
Microsoft Exchange Server
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker to execute arbitrary code on the system.
The vulnerability exists due to insufficient validation of user-supplied input. A remote attacker can send specially crafted data to the Exchange server and execute arbitrary code on the system.
Note, this vulnerability is being actively exploited in the wild.