ZDI-23-1637: Microsoft Exchange IsUNCPath Improper Input Validation NTLM Relay Vulnerability
Published Nov 15, 2023
·Updated
This vulnerability allows remote attackers to relay NTLM credentials on affected installations of Microsoft Exchange. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2023-36035.
Affected Software
1 affected component
Microsoft Exchange
Event History
Nov 15, 2023
Advisory Published
06:00 AM
Data Sourced
06:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-23-1637?
ZDI-23-1637 has a CVSS rating of 8.8, indicating a high severity vulnerability.
2
How can ZDI-23-1637 be exploited?
ZDI-23-1637 can be exploited by remote attackers to relay NTLM credentials when authentication is required.
3
Which software is affected by ZDI-23-1637?
The vulnerability ZDI-23-1637 affects certain installations of Microsoft Exchange.
4
Is authentication required for ZDI-23-1637 exploitation?
Yes, authentication is required to exploit the ZDI-23-1637 vulnerability.
5
What is the CVE associated with ZDI-23-1637?
The CVE associated with ZDI-23-1637 is CVE-2023-36035.