First published: Wed Dec 09 2020(Updated: )
Microsoft Exchange Remote Code Execution Vulnerability This CVE ID is unique from CVE-2020-17117, CVE-2020-17132, CVE-2020-17141, CVE-2020-17144.
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Exchange Server | =2013-cumulative_update_23 | |
Microsoft Exchange Server | =2016-cumulative_update_17 | |
Microsoft Exchange Server | =2016-cumulative_update_18 | |
Microsoft Exchange Server | =2019-cumulative_update_6 | |
Microsoft Exchange Server | =2019-cumulative_update_7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-17142 has a CVSS score indicating a critical severity level due to its potential for remote code execution.
To fix CVE-2020-17142, you should apply the latest cumulative updates for the affected Microsoft Exchange Server versions.
CVE-2020-17142 affects Microsoft Exchange Server 2013 (CU23), 2016 (CU17 and CU18), and 2019 (CU6 and CU7).
CVE-2020-17142 is categorized as a remote code execution vulnerability.
Yes, CVE-2020-17142 can be exploited remotely by an unauthenticated attacker.