CVE-2023-36035: Microsoft Exchange Server Spoofing Vulnerability
Published Nov 14, 2023
·Updated
Microsoft Exchange Server Spoofing Vulnerability
Affected Software
9 affected componentsFixes available
Microsoft Exchange Server 2016=23
Microsoft Exchange Server 2016=23
Microsoft Exchange Server 2019=13
Microsoft Exchange Server 2019=12
Microsoft Exchange Server 2019=12
Microsoft Exchange Server 2019=13
Microsoft Exchange Server=2016-cumulative_update_23
Microsoft Exchange Server=2019-cumulative_update_12
Microsoft Exchange Server=2019-cumulative_update_13
Remediation
Event History
Nov 14, 2023
CVE Published
08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:57 PM
Data Sourced
via MITRE·05:57 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-36035?
CVE-2023-36035 is a Spoofing Vulnerability in Microsoft Exchange Server.
2
What is the severity of CVE-2023-36035?
CVE-2023-36035 has a high severity rating of 8 out of 10.
3
Which versions of Microsoft Exchange Server are affected by CVE-2023-36035?
Microsoft Exchange Server 2019 (versions 13 and 12) and Exchange Server 2016 (version 23) are affected by CVE-2023-36035.
4
How can I fix CVE-2023-36035?
You can fix CVE-2023-36035 by applying the patches provided by Microsoft. Please refer to the Microsoft support page for more information and download the appropriate patch for your version of Exchange Server.
5
Where can I find more information about CVE-2023-36035?
You can find more information about CVE-2023-36035 on the Microsoft Security Response Center (MSRC) website.