Microsoft Exchange Server Remote Code Execution Vulnerability
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Link | Tags |
---|---|
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41082 | vendor advisory |
http://packetstormsecurity.com/files/170066/Microsoft-Exchange-ProxyNotShell-Remote-Code-Execution.html | exploit third party advisory vdb entry |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41082 | patch vendor advisory |
https://www.kb.cert.org/vuls/id/915563 | third party advisory us government resource |
https://www.secpod.com/blog/microsoft-november-2022-patch-tuesday-patches-65-vulnerabilities-including-6-zero-days/ | third party advisory |
https://www.vicarius.io/vsociety/posts/cve-2022-41082-microsoft-exchange-server-remote-code-execution-vulnerability-detection-script | third party advisory |
https://www.vicarius.io/vsociety/posts/cve-2022-41082-microsoft-exchange-server-remote-code-execution-vulnerability-mitigation-script | third party advisory |