CVE-2020-17084: Microsoft Exchange Server Remote Code Execution Vulnerability
Published Nov 11, 2020
·Updated
Microsoft Exchange Server Remote Code Execution Vulnerability
Affected Software
5 affected components
Microsoft Exchange Server=2013-cumulative_update_23
Microsoft Exchange Server=2016-cumulative_update_17
Microsoft Exchange Server=2016-cumulative_update_18
Microsoft Exchange Server=2019-cumulative_update_6
Microsoft Exchange Server=2019-cumulative_update_7
Remediation
Event History
Nov 11, 2020
CVE Published
06:48 AM
Data Sourced
06:48 AM
DescriptionSeverity
Data Sourced
via NVD·07:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-17084?
CVE-2020-17084 has a critical severity rating, indicating a high potential impact on vulnerable systems.
2
How do I fix CVE-2020-17084?
To fix CVE-2020-17084, apply the latest cumulative updates for affected versions of Microsoft Exchange Server.
3
Which versions of Microsoft Exchange Server are affected by CVE-2020-17084?
CVE-2020-17084 affects Microsoft Exchange Server 2013 (Cumulative Update 23), 2016 (Cumulative Updates 17 and 18), and 2019 (Cumulative Updates 6 and 7).
4
What type of vulnerability is CVE-2020-17084?
CVE-2020-17084 is a remote code execution vulnerability that allows attackers to execute arbitrary code on the server.
5
When was CVE-2020-17084 disclosed?
CVE-2020-17084 was disclosed in November 2020 as part of Microsoft's security updates.