CVE-2026-69380: Microsoft Exchange Server Elevation of Privilege Vulnerability
Published Sep 8, 2026
·Updated
Affected Software
1 affected component
Microsoft Exchange Server
Event History
Sep 8, 2026
CVE Published
via MITRE·05:12 PM
Data Sourced
via MITRE·05:12 PM
DescriptionSeverity
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attacker needs low-level privileges and can exploit the issue over the network. No user interaction is required, and the attack complexity is rated low.
2
What could successful exploitation affect?
Successful exploitation can have high impact on confidentiality and integrity. The available data does not indicate an availability impact, and the vulnerability does not affect components beyond the vulnerable security authority.
3
Can this be exploited anonymously?
No. The attack vector indicates that an attacker must already hold low-level privileges before exploitation.