First published: Tue Aug 09 2022(Updated: )
Microsoft Exchange Server Information Disclosure Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Exchange Server | =2013-cumulative_update_11 | |
Microsoft Exchange Server | =2016-cumulative_update_22 | |
Microsoft Exchange Server | =2016-cumulative_update_23 | |
Microsoft Exchange Server | =2019-cumulative_update_11 | |
Microsoft Exchange Server | =2019-cumulative_update_12 | |
=23 | ||
=12 | ||
=23 | ||
=22 | ||
=11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-21979 is a Microsoft Exchange Server Information Disclosure Vulnerability.
CVE-2022-21979 has a severity score of 4.8, which is considered high.
CVE-2022-21979 affects Exchange Server 2013 (cumulative_update_11), Exchange Server 2016 (cumulative_update_22 and cumulative_update_23), and Exchange Server 2019 (cumulative_update_11 and cumulative_update_12).
To fix CVE-2022-21979, you need to apply the corresponding patches provided by Microsoft. Please refer to the following links for the patches: Exchange Server 2013 - cumulative_update_11 (link provided), Exchange Server 2016 - cumulative_update_22 and cumulative_update_23 (links provided), Exchange Server 2019 - cumulative_update_11 and cumulative_update_12 (links provided).
You can find more information about CVE-2022-21979 on the Microsoft Security Response Center website. Here is the reference link: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21979