QID 50126
Date Published: 2023-06-14
QID 50126: Microsoft Exchange Server Remote Code Execution (RCE) Vulnerability for June 2023
Microsoft Exchange Server 2013, 2016 and 2019 are affected by multiple vulnerabilities.
KB Articles associated with this update are: KB5023038
Affected Versions:
Microsoft Exchange Server 2016 Cumulative Update 23
Microsoft Exchange Server 2019 Cumulative Update 12
Microsoft Exchange Server 2019 Cumulative Update 13
QID Detection Logic (Authenticated):
The QID checks for vulnerable version of Microsoft Exchange Server by checking the file version of Exsetup.exe.
Successful exploitation of the vulnerability may allow remote code execution
Solution
Vendor References
- CVE-2023-28310 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-28310 - CVE-2023-32031 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-32031
CVEs related to QID 50126
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| KB5025903 |
|
||
| KB5026261 |
|