Kaspersky ID:
KLA91242
Detect Date:
03/02/2021
Updated:
09/01/2026

Description

Arbitrary code execution vulnerabilities were found in Microsoft Server Software. Malicious users can exploit these vulnerabilities to execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. A remote code execution vulnerability in Microsoft Exchange Server can be exploited remotely to execute arbitrary code.

Original advisories

Exploitation

This vulnerability can be exploited by the following malware:

https://threats.kaspersky.com/en/threat/Exploit.Script.CVE-2021-26855/

Public exploits exist for this vulnerability.

Related products

CVE list

  • CVE-2021-26412
    unknown
  • CVE-2021-26855
    unknown
  • CVE-2021-27078
    unknown
  • CVE-2021-27065
    unknown
  • CVE-2021-26854
    unknown
  • CVE-2021-26857
    unknown
  • CVE-2021-26858
    unknown

KB list

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Do you want to save your changes?
Your message has been sent successfully.