CVE-2014-6326: XSS
Cross-site scripting (XSS) vulnerability in Microsoft Exchange Server 2013 SP1 and Cumulative Update 6 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "OWA XSS Vulnerability," a different vulnerability than CVE-2014-6325.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6326?
CVE-2014-6326 is rated as 'Critical' due to its potential for remote code execution and serious impact on affected systems.
How do I fix CVE-2014-6326?
To fix CVE-2014-6326, you should apply the latest security update from Microsoft for Exchange Server 2013 SP1 and Cumulative Update 6.
What versions of Exchange Server are affected by CVE-2014-6326?
CVE-2014-6326 affects Microsoft Exchange Server 2013 SP1 and Cumulative Update 6.
Can CVE-2014-6326 be exploited remotely?
Yes, CVE-2014-6326 can be exploited remotely by attackers through crafted URLs.
What type of vulnerability is CVE-2014-6326?
CVE-2014-6326 is a Cross-Site Scripting (XSS) vulnerability that allows injection of arbitrary web scripts or HTML.