CVE-2020-17144: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Server improperly validates cmdlet arguments which allow an attacker to perform remote code execution.
Other sources
Microsoft Exchange Remote Code Execution Vulnerability
— NVD
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch KB4593467
Event History
Frequently Asked Questions
What is the severity of CVE-2020-17144?
CVE-2020-17144 is rated as critical due to its potential for remote code execution.
How can I fix CVE-2020-17144?
To remediate CVE-2020-17144, apply the necessary patches provided by Microsoft for Exchange Server 2010 SP3 Rollup 31.
What systems are affected by CVE-2020-17144?
CVE-2020-17144 affects Microsoft Exchange Server 2010 SP3 Rollup 31.
What kind of attack does CVE-2020-17144 enable?
CVE-2020-17144 enables remote code execution attacks due to improper validation of cmdlet arguments.
When was CVE-2020-17144 disclosed?
CVE-2020-17144 was disclosed in July 2020 as part of Microsoft security updates.