First published: Tue Apr 13 2021(Updated: )
Microsoft Exchange Server Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
=2013-cumulative_update_23 | ||
=2016-cumulative_update_19 | ||
=2016-cumulative_update_20 | ||
=2019-cumulative_update_8 | ||
=2019-cumulative_update_9 | ||
Microsoft Exchange Server | =2013-cumulative_update_23 | |
Microsoft Exchange Server | =2016-cumulative_update_19 | |
Microsoft Exchange Server | =2016-cumulative_update_20 | |
Microsoft Exchange Server | =2019-cumulative_update_8 | |
Microsoft Exchange Server | =2019-cumulative_update_9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-28482 is rated as critical due to its potential for remote code execution.
To mitigate CVE-2021-28482, users should apply the latest security patches provided by Microsoft for affected Exchange Server versions.
CVE-2021-28482 affects Microsoft Exchange Server 2013 Cumulative Update 23, 2016 Cumulative Updates 19 and 20, and 2019 Cumulative Updates 8 and 9.
CVE-2021-28482 is classified as a remote code execution vulnerability.
Yes, successful exploitation of CVE-2021-28482 could potentially lead to unauthorized access and data loss.