Microsoft Exchange Server Privilege Escalation Vulnerability
Microsoft · Exchange Server
Date added (CISA)
2022-03-03
Remediation due
2022-03-17
Known ransomware use
Yes
Remediation priority
P1 — known ransomware use · past CISA due date
Description
A privilege escalation vulnerability exists in Microsoft Exchange Server. An attacker who successfully exploited this vulnerability could attempt to impersonate any other user of the Exchange server.