CVE-2019-0588: Medium severity microsoft exchange server vulnerability
An information disclosure vulnerability exists when the Microsoft Exchange PowerShell API grants calendar contributors more view permissions than intended, aka "Microsoft Exchange Information Disclosure Vulnerability." This affects Microsoft Exchange Server.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-0588?
CVE-2019-0588 is classified as a medium severity vulnerability affecting Microsoft Exchange.
How do I fix CVE-2019-0588?
To fix CVE-2019-0588, apply the recommended security updates provided by Microsoft for your specific version of Exchange Server.
What versions of Microsoft Exchange are affected by CVE-2019-0588?
CVE-2019-0588 affects Microsoft Exchange Server 2010, 2013, 2016, and 2019 with specific updates.
What type of vulnerability is CVE-2019-0588?
CVE-2019-0588 is an information disclosure vulnerability related to excessive permissions in the PowerShell API.
Can CVE-2019-0588 lead to unauthorized access?
Yes, CVE-2019-0588 may allow unauthorized users to gain more view permissions than intended for calendar data.