CVE-2021-28480: Microsoft Exchange Server Remote Code Execution Vulnerability
Published Apr 13, 2021
·Updated
Microsoft Exchange Server Remote Code Execution Vulnerability
Affected Software
5 affected components
Microsoft Exchange Server=2013-cumulative_update_23
Microsoft Exchange Server=2016-cumulative_update_19
Microsoft Exchange Server=2016-cumulative_update_20
Microsoft Exchange Server=2019-cumulative_update_8
Microsoft Exchange Server=2019-cumulative_update_9
Remediation
Event History
Apr 13, 2021
CVE Published
07:33 PM
Data Sourced
07:33 PM
DescriptionSeverity
Mar 26, 2024
News Published
via ZDNet·06:57 PM
News Published
via ZDNet·07:48 PM
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2021-28480?
CVE-2021-28480 has a critical severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2021-28480?
To resolve CVE-2021-28480, apply the latest cumulative updates for affected versions of Microsoft Exchange Server.
3
Which versions of Microsoft Exchange Server are affected by CVE-2021-28480?
CVE-2021-28480 affects Microsoft Exchange Server 2013 cumulative update 23, 2016 cumulative updates 19 and 20, and 2019 cumulative updates 8 and 9.
4
What kind of vulnerability is CVE-2021-28480?
CVE-2021-28480 is classified as a Remote Code Execution vulnerability.
5
Can CVE-2021-28480 lead to unauthorized access in my system?
Yes, CVE-2021-28480 can allow an attacker to execute arbitrary code, potentially leading to unauthorized access.