ZeroHour

CVE-2017-11932

CVSS 3.0
8.1 high
EPSS
6%p93
Published
()
Modified
Description

Microsoft Exchange Server 2016 CU5 and Microsoft Exchange Server 2016 CU5 allow a spoofing vulnerability due to the way Outlook Web Access (OWA) validates web requests, aka "Microsoft Exchange Spoofing Vulnerability".

Vendors
microsoft
Products
exchange server
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

In the news