ZDI-CAN-21958: ZDI-23-1640: Microsoft Exchange TransportConfigContainer Deserialization of Untrusted Data Information Disclosure Vulnerability
Published Nov 15, 2023
·Updated
This vulnerability allows remote attackers to disclose sensitive information or relay NTLM credentials on affected installations of Microsoft Exchange. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2023-36050.
Affected Software
1 affected component
Microsoft Exchange
Event History
Nov 15, 2023
Advisory Published
06:00 AM
Data Sourced
06:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-21958?
ZDI-CAN-21958 has a CVSS rating of 8.8, indicating a high severity level.
2
What type of attack does ZDI-CAN-21958 facilitate?
ZDI-CAN-21958 allows remote attackers to disclose sensitive information or relay NTLM credentials.
3
Is authentication required to exploit ZDI-CAN-21958?
Yes, authentication is required to exploit the ZDI-CAN-21958 vulnerability.
4
Which software is affected by ZDI-CAN-21958?
Microsoft Exchange is the affected software for ZDI-CAN-21958.
5
How can organizations mitigate ZDI-CAN-21958?
Organizations should apply the latest security patches provided by Microsoft for Microsoft Exchange to mitigate ZDI-CAN-21958.