CVE-2024-26198: Microsoft Exchange Server Remote Code Execution Vulnerability
Published Mar 12, 2024
·Updated
Microsoft Exchange Server Remote Code Execution Vulnerability
Affected Software
43 affected componentsFixes available
Microsoft Exchange Server 2016=23
Microsoft Exchange Server 2016=23
Microsoft Exchange Server 2019=13
Microsoft Exchange Server 2019=14
Microsoft Exchange Server 2019=14
Microsoft Exchange Server 2019=13
Microsoft Exchange Server=2016
Microsoft Exchange Server=2016-cumulative_update_1
Microsoft Exchange Server=2016-cumulative_update_10
Microsoft Exchange Server=2016-cumulative_update_11
Microsoft Exchange Server=2016-cumulative_update_12
Microsoft Exchange Server=2016-cumulative_update_13
Microsoft Exchange Server=2016-cumulative_update_14
Microsoft Exchange Server=2016-cumulative_update_15
Microsoft Exchange Server=2016-cumulative_update_16
Microsoft Exchange Server=2016-cumulative_update_17
Microsoft Exchange Server=2016-cumulative_update_18
Microsoft Exchange Server=2016-cumulative_update_19
Microsoft Exchange Server=2016-cumulative_update_2
Microsoft Exchange Server=2016-cumulative_update_20
Microsoft Exchange Server=2016-cumulative_update_21
Microsoft Exchange Server=2016-cumulative_update_22
Microsoft Exchange Server=2016-cumulative_update_3
Microsoft Exchange Server=2016-cumulative_update_4
Microsoft Exchange Server=2016-cumulative_update_5
Microsoft Exchange Server=2016-cumulative_update_6
Microsoft Exchange Server=2016-cumulative_update_7
Microsoft Exchange Server=2016-cumulative_update_8
Microsoft Exchange Server=2016-cumulative_update_9
Microsoft Exchange Server=2019
Microsoft Exchange Server=2019-cumulative_update_1
Microsoft Exchange Server=2019-cumulative_update_10
Microsoft Exchange Server=2019-cumulative_update_11
Microsoft Exchange Server=2019-cumulative_update_12
Microsoft Exchange Server=2019-cumulative_update_13
Microsoft Exchange Server=2019-cumulative_update_2
Microsoft Exchange Server=2019-cumulative_update_3
Microsoft Exchange Server=2019-cumulative_update_4
Microsoft Exchange Server=2019-cumulative_update_5
Microsoft Exchange Server=2019-cumulative_update_6
Microsoft Exchange Server=2019-cumulative_update_7
Microsoft Exchange Server=2019-cumulative_update_8
Microsoft Exchange Server=2019-cumulative_update_9
Event History
Mar 12, 2024
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·04:57 PM
Data Sourced
via MITRE·04:57 PM
DescriptionSeverity
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-26198?
CVE-2024-26198 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2024-26198?
You can fix CVE-2024-26198 by applying the relevant security patches provided by Microsoft for your version of Exchange Server.
3
Which versions of Exchange Server are affected by CVE-2024-26198?
CVE-2024-26198 affects Exchange Server versions 2016 and 2019.
4
Can CVE-2024-26198 be exploited remotely?
Yes, CVE-2024-26198 can be exploited remotely, allowing attackers to execute arbitrary code on the server.
5
What are the potential impacts of CVE-2024-26198?
The potential impacts of CVE-2024-26198 include unauthorized access, data breaches, and full control over affected Exchange Server systems.