CVE-2021-31198: (Pwn2Own) Microsoft Exchange Server OAB Arbitrary File Write Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
Other sources
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Exchange Server. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the OAB service. The issue results from the lack of proper validation of user-supplied data, which can allow arbitrary files write to OAB folders. An attacker can leverage this vulnerability to execute arbitrary code in the context of SYSTEM.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-31198?
CVE-2021-31198 is a vulnerability in Microsoft Exchange Server that allows remote attackers to execute arbitrary code on affected installations.
What is the severity of CVE-2021-31198?
CVE-2021-31198 has a severity rating of 8.8 (high).
Which versions of Microsoft Exchange Server are affected by CVE-2021-31198?
CVE-2021-31198 affects Microsoft Exchange Server 2013 Cumulative Update 23, 2016 Cumulative Update 19 and 20, and 2019 Cumulative Update 8 and 9.
How can CVE-2021-31198 be exploited?
CVE-2021-31198 can be exploited by bypassing the existing authentication mechanism and exploiting the flaw in the OAB service.
Where can I find more information about CVE-2021-31198?
You can find more information about CVE-2021-31198 on the Microsoft Security Response Center (MSRC) website and the Zero Day Initiative (ZDI) website.