Microsoft Exchange Server CVE-2019-1136 Remote Privilege Escalation Vulnerability
BID:109030
Info
Microsoft Exchange Server CVE-2019-1136 Remote Privilege Escalation Vulnerability
| Bugtraq ID: | 109030 |
| Class: | Design Error |
| CVE: |
CVE-2019-1136 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 09 2019 12:00AM |
| Updated: | Jul 09 2019 12:00AM |
| Credit: | Pham Van Khanh of Viettel Cyber Security. |
| Vulnerable: |
Microsoft Exchange Server 2016 Cumulative Update 13 Microsoft Exchange Server 2016 Cumulative Update 12 Microsoft Exchange Server 2013 Cumulative Update 23 Microsoft Exchange Server 2010 SP3 |
| Not Vulnerable: | |
Discussion
Microsoft Exchange Server CVE-2019-1136 Remote Privilege Escalation Vulnerability
Microsoft Exchange Server is prone to a remote privilege-escalation vulnerability.
Attackers can exploit this issue to gain elevated privileges.
Microsoft Exchange Server is prone to a remote privilege-escalation vulnerability.
Attackers can exploit this issue to gain elevated privileges.
Exploit / POC
Microsoft Exchange Server CVE-2019-1136 Remote Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Exchange Server CVE-2019-1136 Remote Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Microsoft Exchange Server CVE-2019-1136 Remote Privilege Escalation Vulnerability
References:
References:
- Exchange Server Home Page (Microsoft)
- Microsoft Homepage (Microsoft)
- CVE-2019-1136 | Microsoft Exchange Server Elevation of Privilege Vulnerability (Microsoft)