Medium
CVSS: 6.5
User interface (ui) misrepresentation of critical information in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
Medium
CVSS: 5.3
User interface (ui) misrepresentation of critical information in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
High
CVSS: 7.5
Improper input validation in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
High
CVSS: 8.8
Weak authentication in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
High
CVSS: 7.5
Improper input validation in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
High
CVSS: 8.4
Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to elevate privileges locally.
High
CVSS: 7.5
Exposure of sensitive information to an unauthorized actor in Microsoft Exchange Server allows an unauthorized attacker to disclose information over a network.
Medium
CVSS: 5.3
Improper validation of syntactic correctness of input in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
Medium
CVSS: 5.3
Improper handling of additional special element in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
Medium
CVSS: 6.5
Improper input validation in Microsoft Exchange Server allows an authorized attacker to perform tampering over a network.
High
CVSS: 8.0
On April 18th 2025, Microsoft announced Exchange Server Security Changes for Hybrid Deployments and accompanying non-security Hot Fix. Microsoft made these changes in the general interest of improving the security of hybrid Exchange deploym…