CVE-2018-8374: Medium severity microsoft exchange server vulnerability
Published Aug 15, 2018
·Updated
A tampering vulnerability exists when Microsoft Exchange Server fails to properly handle profile data, aka "Microsoft Exchange Server Tampering Vulnerability." This affects Microsoft Exchange Server.
Affected Software
2 affected components
Microsoft Exchange Server=2016-cumulative_update_10
Microsoft Exchange Server=2016-cumulative_update_9
Remediation
Event History
Aug 15, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-8374?
CVE-2018-8374 is classified as a tampering vulnerability affecting Microsoft Exchange Server.
2
How do I fix CVE-2018-8374?
To mitigate CVE-2018-8374, it is recommended to apply the latest cumulative updates for Microsoft Exchange Server.
3
What versions of Microsoft Exchange Server are affected by CVE-2018-8374?
CVE-2018-8374 affects Microsoft Exchange Server 2016, specifically cumulative update 9 and cumulative update 10.
4
What kind of attacks can exploit CVE-2018-8374?
Exploiting CVE-2018-8374 can potentially allow unauthorized alteration of profile data in Microsoft Exchange Server.
5
Is there a workaround for CVE-2018-8374?
There are no confirmed workarounds for CVE-2018-8374; updating to the patched versions is the primary solution.