8.6

CVE-2018-16793

Exploit
Rollup 18 for Microsoft Exchange Server 2010 SP3 and previous versions has an SSRF vulnerability via the username parameter in /owa/auth/logon.aspx in the OWA (Outlook Web Access) login page.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup1
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup10
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup11
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup12
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup13
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup14
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup15
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup16
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup17
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup18
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup2
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup3
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup4
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup5
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup6
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup7
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup8
Microsoft ≫ Exchange Server Version 2010 Update sp3_rollup9
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 11.33% 0.954
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.6 3.9 4
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
CWE-918 Server-Side Request Forgery (SSRF)

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

http://packetstormsecurity.com/files/149411/Rollup-18-For-Microsoft-Exchange-Server-2010-SP3-Server-Side-Request-Forgery.html
Third Party Advisory
Exploit
VDB Entry
http://seclists.org/fulldisclosure/2018/Sep/20
Third Party Advisory
Exploit
Mailing List
http://www.securityfocus.com/bid/105386
Third Party Advisory
VDB Entry
https://seclists.org/bugtraq/2018/Sep/38
Third Party Advisory
Exploit
Mailing List
Issue Tracking