HIGH 8.8 Microsoft
CVE-2024-26198
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Security Update 2024-Mar: Microsoft Exchange Server Remote Code Execution Vulnerability
Affected Products
- Microsoft Exchange Server 2019 Cumulative Update 14
- Microsoft Exchange Server 2019 Cumulative Update 13
- Microsoft Exchange Server 2016 Cumulative Update 23
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26198
- https://nvd.nist.gov/vuln/detail/CVE-2024-26198
This high severity vulnerability with a CVSS score of 8.8 was published on 2024-03-12 via Microsoft. EPSS score: 6.8% (top 7% of all CVEs by exploitation probability). Affected: Microsoft Exchange Server 2019 Cumulative Update 14, Microsoft Exchange Server 2019 Cumulative Update 13, Microsoft Exchange Server 2016 Cumulative Update 23.
vulnfeed aggregates 10103 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.