QID 50127
Date Published: 2023-08-09
QID 50127: Microsoft Exchange Server Multiple Vulnerabilities for August 2023
Microsoft Exchange Server 2016 and 2019 are affected by multiple vulnerabilities.
KB Articles associated with this update are: KB5029388
Affected Versions:
Microsoft Exchange Server 2016 Cumulative Update 23
Microsoft Exchange Server 2019 Cumulative Update 12
Microsoft Exchange Server 2019 Cumulative Update 13
QID Detection Logic (Authenticated):
The QID checks for vulnerable version of Microsoft Exchange Server by checking the file version of Exsetup.exe.
Note: For CVE-2023-21709: There is script available, run the CVE-2023-21709.ps1 script
Successful exploitation of the vulnerability may allow remote code execution, elevation of privilege and spoofing
Solution
Microsoft has released patch, customers are advised to refer to 5029388 for information pertaining to this vulnerability.
Vendor References
- KB5029388 -
support.microsoft.com/help/5029388
CVEs related to QID 50127
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| KB5029388 |
|