CVE-2020-17141: Microsoft Exchange Remote Code Execution Vulnerability
Published Dec 8, 2020
·Updated
Microsoft Exchange Remote Code Execution Vulnerability This CVE ID is unique from CVE-2020-17117, CVE-2020-17132, CVE-2020-17142, CVE-2020-17144.
Affected Software
8 affected componentsFixes available
Microsoft Exchange Server=2016-cumulative_update_17
Microsoft Exchange Server=2016-cumulative_update_18
Microsoft Exchange Server=2019-cumulative_update_6
Microsoft Exchange Server=2019-cumulative_update_7
Microsoft Exchange Server 2016=17
Microsoft Exchange Server 2019=7
Microsoft Exchange Server 2016=18
Microsoft Exchange Server 2019=6
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-17141?
CVE-2020-17141 has a critical severity rating, indicating a high potential for exploitation.
2
How do I fix CVE-2020-17141?
To fix CVE-2020-17141, apply the latest security updates provided by Microsoft for affected versions of Exchange Server.
3
What versions of Microsoft Exchange Server are affected by CVE-2020-17141?
CVE-2020-17141 affects Microsoft Exchange Server 2016 and 2019, specifically cumulative updates 17 and 18 for 2016, and updates 6 and 7 for 2019.
4
What type of vulnerability is CVE-2020-17141?
CVE-2020-17141 is classified as a remote code execution vulnerability.
5
Can CVE-2020-17141 lead to data breaches?
Yes, CVE-2020-17141 can potentially lead to data breaches if successfully exploited.