CVE-2014-6319: Medium severity microsoft exchange server vulnerability
Outlook Web App (OWA) in Microsoft Exchange Server 2007 SP3, 2010 SP3, and 2013 SP1 and Cumulative Update 6 does not properly validate tokens in requests, which allows remote attackers to spoof the origin of e-mail messages via unspecified vectors, aka "Outlook Web App Token Spoofing Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6319?
The severity of CVE-2014-6319 is considered critical as it allows remote attackers to spoof the origin of email messages.
How do I fix CVE-2014-6319?
To fix CVE-2014-6319, apply the relevant security updates provided by Microsoft for your version of Exchange Server.
What versions of Microsoft Exchange Server are affected by CVE-2014-6319?
CVE-2014-6319 affects Microsoft Exchange Server 2007 SP3, 2010 SP3, and 2013 SP1 and Cumulative Update 6.
Can CVE-2014-6319 lead to data breaches?
Yes, CVE-2014-6319 can lead to data breaches as it allows attackers to spoof email messages, potentially misleading recipients.
What type of vulnerability is CVE-2014-6319?
CVE-2014-6319 is a token spoofing vulnerability in the Outlook Web App of Microsoft Exchange Server.