HIGH 7.5 Microsoft
CVE-2024-49040
Microsoft Exchange Server Spoofing Vulnerability
Microsoft Security Update 2024-Nov: Microsoft Exchange Server Spoofing Vulnerability
Affected Products
- Microsoft Exchange Server 2019 Cumulative Update 13
- Microsoft Exchange Server 2019 Cumulative Update 14
- Microsoft Exchange Server 2016 Cumulative Update 23
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-49040
- https://nvd.nist.gov/vuln/detail/CVE-2024-49040
This high severity vulnerability with a CVSS score of 7.5 was published on 2024-11-12 via Microsoft. EPSS score: 8.5% (top 5% of all CVEs by exploitation probability). Affected: Microsoft Exchange Server 2019 Cumulative Update 13, Microsoft Exchange Server 2019 Cumulative Update 14, Microsoft Exchange Server 2016 Cumulative Update 23.
vulnfeed aggregates 7640 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.