Beschreibung
Multiple serious vulnerabilities have been found in Microsoft Exchange Server. Malicious users can exploit these vulnerabilities to spoof user interface. obtain sensitive information or gain privileges.
Below is a complete list of vulnerabilities
- An improper email messages parsing can be exploited remotely via a specially designed email to obtain sensitive information;
- An improper open redirect handling can be exploited remotely via a specially designed URL to spoof user interface;
- An improper meeting invitation handling can be exploited remotely via a specially designed Outlook meeting to gain privileges.
Ursprüngliche Informationshinweise
CVE Liste
- CVE-2016-0138 critical
- CVE-2016-3379 critical
- CVE-2016-3378 critical
KB Liste
Mehr erfahren
Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com
Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!