CVE-2023-35368: Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.1258.025Patch KB5030524 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.01.2507.032Patch KB5030524 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.1118.037Patch KB5030524
Event History
Frequently Asked Questions
What is CVE-2023-35368?
CVE-2023-35368 is a Microsoft Exchange Remote Code Execution Vulnerability.
How severe is CVE-2023-35368?
CVE-2023-35368 has a severity score of 8.8, which is considered high.
Which versions of Microsoft Exchange Server are affected by CVE-2023-35368?
Microsoft Exchange Server 2016 (Cumulative Update 23) and Microsoft Exchange Server 2019 (Cumulative Update 12 and 13) are affected by CVE-2023-35368.
How can I fix CVE-2023-35368?
To fix CVE-2023-35368, you should apply the corresponding patches or updates provided by Microsoft. You can find the patches and updates on the Microsoft website.
Where can I find more information about CVE-2023-35368?
You can find more information about CVE-2023-35368 on the Microsoft Security Response Center website.