Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Exchange Server
Total 225 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0993 1 Microsoft 1 Exchange Server 2024-11-20 7.5 HIGH N/A
Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cache is refreshed.
CVE-1999-0945 1 Microsoft 1 Exchange Server 2024-11-20 5.0 MEDIUM N/A
Buffer overflow in Internet Mail Service (IMS) for Microsoft Exchange 5.5 and 5.0 allows remote attackers to conduct a denial of service via AUTH or AUTHINFO commands.
CVE-1999-0682 1 Microsoft 1 Exchange Server 2024-11-20 5.0 MEDIUM N/A
Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if the anti-relaying features are enabled.
CVE-1999-0385 1 Microsoft 1 Exchange Server 2024-11-20 10.0 HIGH N/A
The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands.
CVE-1999-0284 2 Ibm, Microsoft 2 Lotus Domino Mail Server, Exchange Server 2024-11-20 7.5 HIGH N/A
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.
CVE-1999-0007 5 C2net, Hp, Microsoft and 2 more 13 Stonghold Web Server, Open Market Secure Webserver, Exchange Server and 10 more 2024-11-20 5.0 MEDIUM N/A
Information from SSL-encrypted sessions via PKCS #1.
CVE-2024-49040 1 Microsoft 1 Exchange Server 2024-11-16 N/A 7.5 HIGH
Microsoft Exchange Server Spoofing Vulnerability
CVE-2022-21969 1 Microsoft 1 Exchange Server 2024-11-14 7.7 HIGH 9.0 CRITICAL
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2022-21855 1 Microsoft 1 Exchange Server 2024-11-14 7.7 HIGH 9.0 CRITICAL
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2022-21846 1 Microsoft 1 Exchange Server 2024-11-14 8.3 HIGH 9.0 CRITICAL
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-31196 1 Microsoft 1 Exchange Server 2024-08-22 6.5 MEDIUM 7.2 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2020-17144 1 Microsoft 1 Exchange Server 2024-07-26 6.0 MEDIUM 8.4 HIGH
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2021-34473 1 Microsoft 1 Exchange Server 2024-07-26 10.0 HIGH 9.1 CRITICAL
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-31207 1 Microsoft 1 Exchange Server 2024-07-26 6.5 MEDIUM 6.6 MEDIUM
Microsoft Exchange Server Security Feature Bypass Vulnerability
CVE-2021-26858 1 Microsoft 1 Exchange Server 2024-07-25 6.8 MEDIUM 7.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26857 1 Microsoft 1 Exchange Server 2024-07-25 6.8 MEDIUM 7.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-27065 1 Microsoft 1 Exchange Server 2024-07-25 6.8 MEDIUM 7.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-42321 1 Microsoft 1 Exchange Server 2024-07-24 6.5 MEDIUM 8.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-33766 1 Microsoft 1 Exchange Server 2024-07-24 5.0 MEDIUM 7.3 HIGH
Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2017-8540 1 Microsoft 19 Endpoint Protection, Exchange Server, Forefront Endpoint Protection and 16 more 2024-07-24 9.3 HIGH 7.8 HIGH
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and 2016, does not properly scan a specially crafted file leading to memory corruption. aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability", a different vulnerability than CVE-2017-8538 and CVE-2017-8541.