CVE-2023-38185: Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.1258.025Patch KB5030524 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.01.2507.032Patch KB5030524 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.02.1118.037Patch KB5030524
Event History
Frequently Asked Questions
What is CVE-2023-38185?
CVE-2023-38185 is a Microsoft Exchange Server Remote Code Execution Vulnerability.
How severe is the CVE-2023-38185 vulnerability?
The CVE-2023-38185 vulnerability has a severity rating of 8.8 (high).
Which Microsoft Exchange Server versions are affected by CVE-2023-38185?
The CVE-2023-38185 vulnerability affects Microsoft Exchange Server 2016 Cumulative Update 23, Microsoft Exchange Server 2019 Cumulative Update 12, and Microsoft Exchange Server 2019 Cumulative Update 13.
How can I fix CVE-2023-38185 vulnerability in Microsoft Exchange Server 2016?
To fix the CVE-2023-38185 vulnerability in Microsoft Exchange Server 2016, you need to install Cumulative Update 23 and follow the recommended steps provided by Microsoft.
How can I fix CVE-2023-38185 vulnerability in Microsoft Exchange Server 2019?
To fix the CVE-2023-38185 vulnerability in Microsoft Exchange Server 2019, you need to install Cumulative Update 12 or Cumulative Update 13 and follow the recommended steps provided by Microsoft.