CVE-2021-34470: Microsoft Exchange Server Elevation of Privilege Vulnerability
Microsoft Exchange Server Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-33768, CVE-2021-34523.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.01.2308.008Patch KB5003611 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.0922.007Patch KB5003612 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.00.1497.023Patch KB5004778
Event History
Frequently Asked Questions
What is CVE-2021-34470?
CVE-2021-34470 is a vulnerability in Microsoft Exchange Server that allows for elevation of privilege.
Which versions of Microsoft Exchange Server are affected by CVE-2021-34470?
Microsoft Exchange Server 2013 Cumulative Update 23, Microsoft Exchange Server 2016 Cumulative Update 21, and Microsoft Exchange Server 2019 Cumulative Update 10 are affected by CVE-2021-34470.
What is the severity of CVE-2021-34470?
CVE-2021-34470 has a severity rating of high.
How can I fix the CVE-2021-34470 vulnerability?
To fix the CVE-2021-34470 vulnerability, apply the necessary security updates provided by Microsoft.
Where can I find more information about CVE-2021-34470?
You can find more information about CVE-2021-34470 on the Microsoft Security Response Center website.