CVE-2022-21979: Microsoft Exchange Server Information Disclosure Vulnerability
Microsoft Exchange Server Information Disclosure Vulnerability
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-21979?
CVE-2022-21979 is a Microsoft Exchange Server Information Disclosure Vulnerability.
How severe is CVE-2022-21979?
CVE-2022-21979 has a severity score of 4.8, which is considered high.
Which versions of Microsoft Exchange Server are affected by CVE-2022-21979?
CVE-2022-21979 affects Exchange Server 2013 (cumulative_update_11), Exchange Server 2016 (cumulative_update_22 and cumulative_update_23), and Exchange Server 2019 (cumulative_update_11 and cumulative_update_12).
How can I fix CVE-2022-21979?
To fix CVE-2022-21979, you need to apply the corresponding patches provided by Microsoft. Please refer to the following links for the patches: Exchange Server 2013 - cumulative_update_11 (link provided), Exchange Server 2016 - cumulative_update_22 and cumulative_update_23 (links provided), Exchange Server 2019 - cumulative_update_11 and cumulative_update_12 (links provided).
Where can I find more information about CVE-2022-21979?
You can find more information about CVE-2022-21979 on the Microsoft Security Response Center website. Here is the reference link: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21979