CVE-2021-26427: Microsoft Exchange Server Remote Code Execution Vulnerability
Published Oct 13, 2021
·Updated
Microsoft Exchange Server Remote Code Execution Vulnerability
Affected Software
5 affected components
Microsoft Exchange Server=2013-cumulative_update_23
Microsoft Exchange Server=2016-cumulative_update_21
Microsoft Exchange Server=2016-cumulative_update_22
Microsoft Exchange Server=2019-cumulative_update_10
Microsoft Exchange Server=2019-cumulative_update_11
Remediation
Event History
Oct 13, 2021
CVE Published
12:26 AM
Data Sourced
12:26 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2021-26427?
CVE-2021-26427 is a Remote Code Execution vulnerability in Microsoft Exchange Server.
2
How severe is CVE-2021-26427?
CVE-2021-26427 has a severity rating of 9, which is considered critical.
3
Which versions of Microsoft Exchange Server are affected by CVE-2021-26427?
CVE-2021-26427 affects Microsoft Exchange Server 2013 cumulative update 23, Microsoft Exchange Server 2016 cumulative update 21 and 22, and Microsoft Exchange Server 2019 cumulative update 10 and 11.
4
How can I fix CVE-2021-26427?
To fix CVE-2021-26427, apply the security updates provided by Microsoft. More information can be found in the Microsoft Security Advisory: [https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26427](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26427)