KLA11685
Spoofing vulnerability in Microsoft Exchange Server
Обновлено: 22/05/2020
Дата обнаружения
10/03/2020
Уровень угрозы
High
Описание

A spoofing vulnerability was found in Microsoft Exchange Server. Malicious users can exploit this vulnerability to spoof user interface.

Пораженные продукты

Microsoft Exchange Server 2016 Cumulative Update 15
Microsoft Exchange Server 2019 Cumulative Update 4
Microsoft Exchange Server 2019 Cumulative Update 3
Microsoft Exchange Server 2016 Cumulative Update 14

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2020-0903
Оказываемое влияние
?
SUI 
[?]
Связанные продукты
Microsoft Exchange Server
CVE-IDS
CVE-2020-09030.0Unknown
KB list

4540123

Microsoft official advisories
Microsoft Security Update Guide