Microsoft Exchange Server
cpe:2.3:a:microsoft:exchange_srv:*:*:*:*:*:*:*
A spoofing vulnerability has been identified in Microsoft Exchange Server due to user interface misrepresentation of critical information. This issue allows an unauthorized attacker to perform spoofing over a network. The vulnerability affects multiple versions of Microsoft Exchange Server, including Exchange Server 2019 Cumulative Updates 14 and 15, Exchange Server 2016 Cumulative Update 23, and Exchange Server Subscription Edition RTM.
Exploitation of this vulnerability could lead to unauthorized spoofing activities over the network.
Users can download the security update for Microsoft Exchange Server 2019 Cumulative Update 14 or 15, and for Exchange Server 2016 Cumulative Update 23. For Exchange Server Subscription Edition RTM, the security update is available through the Microsoft Update Catalog.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.