CISA Known Exploited Vulnerability

CVE-2018-8581 Ransomware

Microsoft · Exchange Server

Microsoft Exchange Server Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE
Ransomware Known

CISA description

A privilege escalation vulnerability exists in Microsoft Exchange Server. An attacker who successfully exploited this vulnerability could attempt to impersonate any other user of the Exchange server.

Required action

Apply updates per vendor instructions.