QID 50119
Date Published: 2022-03-09
QID 50119: Microsoft Exchange Server Multiple Vulnerabilities for March 2022
Microsoft Exchange Server Remote Code Execution Vulnerability
KB Articles associated with this update are: 5012698, 5010324
Affected Versions:
Microsoft Exchange Server 2016 Cumulative Update 21
Microsoft Exchange Server 2016 Cumulative Update 22
Microsoft Exchange Server 2019 Cumulative Update 10
Microsoft Exchange Server 2019 Cumulative Update 11
Microsoft Exchange Server 2013 Cumulative Update 23
QID Detection Logic (authenticated):
The QID checks for the version of file Exsetup.exe.
Successful exploitation allows attackers to execute remote code.
Solution
Vendor References
- CVE-2022-23277 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-23277 - CVE-2022-24463 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-24463
CVEs related to QID 50119
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| KB5010324 |
|
||
| KB5012698 |
|