7.4
CVE-2018-8581
- EPSS 91.5%
- Veröffentlicht 14.11.2018 01:29:01
- Zuletzt bearbeitet 28.10.2025 14:12:33
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." This affects Microsoft Exchange Server.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Exchange Server Version2010 Update-
Microsoft ≫ Exchange Server Version2013 Update-
Microsoft ≫ Exchange Server Version2016 Update-
Microsoft ≫ Exchange Server Version2019 Update-
03.03.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog
Microsoft Exchange Server Privilege Escalation Vulnerability
SchwachstelleA privilege escalation vulnerability exists in Microsoft Exchange Server. An attacker who successfully exploited this vulnerability could attempt to impersonate any other user of the Exchange server.
BeschreibungApply updates per vendor instructions.
Erforderliche Maßnahmen| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 91.5% | 0.996 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.4 | 2.2 | 5.2 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.4 | 2.2 | 5.2 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
|