CVE-2021-33768: Microsoft Exchange Server Elevation of Privilege Vulnerability
Microsoft Exchange Server Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-34470, CVE-2021-34523.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.0922.013Patch KB5004780 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.0858.015Patch KB5004780 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.01.2242.012Patch KB5004779 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.01.2308.014Patch KB5004779
Event History
Frequently Asked Questions
What is CVE-2021-33768?
CVE-2021-33768 is a high severity vulnerability in Microsoft Exchange Server that allows for elevation of privilege.
Which versions of Microsoft Exchange Server are affected by CVE-2021-33768?
Versions 2016 Cumulative Update 20 and later, and Versions 2019 Cumulative Update 9 and later are affected by CVE-2021-33768.
How severe is CVE-2021-33768?
CVE-2021-33768 has a severity rating of 8, which indicates a high severity level.
What is the fix for CVE-2021-33768?
To fix CVE-2021-33768, it is recommended to install the relevant security update provided by Microsoft.
Where can I find more information about CVE-2021-33768?
You can find more information about CVE-2021-33768 on the official Microsoft Security Guidance Advisory page: [https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-33768](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-33768)