Filtered by vendor Microsoft Subscriptions
Filtered by product Exchange Server Subscriptions
Total 233 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2005-0563 1 Microsoft 1 Exchange Server 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in Microsoft Outlook Web Access (OWA) component in Exchange Server 5.5 allows remote attackers to inject arbitrary web script or HTML via an email message with an encoded javascript: URL ("jav&#X41sc
ript:") in an IMG tag.
CVE-2002-0054 1 Microsoft 2 Exchange Server, Windows 2000 2025-04-03 N/A
SMTP service in (1) Microsoft Windows 2000 and (2) Internet Mail Connector (IMC) in Exchange Server 5.5 does not properly handle responses to NTLM authentication, which allows remote attackers to perform mail relaying via an SMTP AUTH command using null session credentials.
CVE-2006-0002 1 Microsoft 3 Exchange Server, Office, Outlook 2025-04-03 N/A
Unspecified vulnerability in Microsoft Outlook 2000 through 2003, Exchange 5.0 Server SP2 and 5.5 SP4, Exchange 2000 SP3, and Office allows remote attackers to execute arbitrary code via an e-mail message with a crafted Transport Neutral Encapsulation Format (TNEF) MIME attachment, related to message length validation.
CVE-2021-31198 1 Microsoft 1 Exchange Server 2025-03-01 7.8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2020-0903 1 Microsoft 1 Exchange Server 2025-03-01 5.4 Medium
A cross-site-scripting (XSS) vulnerability exists when Microsoft Exchange Server does not properly sanitize a specially crafted web request to an affected Exchange server, aka 'Microsoft Exchange Server Spoofing Vulnerability'.
CVE-2023-21745 1 Microsoft 1 Exchange Server 2025-03-01 8 High
Microsoft Exchange Server Spoofing Vulnerability
CVE-2023-21762 1 Microsoft 1 Exchange Server 2025-03-01 8 High
Microsoft Exchange Server Spoofing Vulnerability
CVE-2023-21707 1 Microsoft 1 Exchange Server 2025-03-01 8.8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-21710 1 Microsoft 1 Exchange Server 2025-03-01 7.2 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-28310 1 Microsoft 1 Exchange Server 2025-03-01 8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-32031 1 Microsoft 1 Exchange Server 2025-03-01 8.8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-31209 1 Microsoft 1 Exchange Server 2025-02-28 6.5 Medium
Microsoft Exchange Server Spoofing Vulnerability
CVE-2021-31195 1 Microsoft 1 Exchange Server 2025-02-28 6.5 Medium
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-35368 1 Microsoft 1 Exchange Server 2025-02-28 8.8 High
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2023-38185 1 Microsoft 1 Exchange Server 2025-02-28 8.8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-21709 1 Microsoft 1 Exchange Server 2025-02-28 9.8 Critical
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2023-35388 1 Microsoft 1 Exchange Server 2025-02-28 8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-38182 1 Microsoft 1 Exchange Server 2025-02-28 8 High
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-38181 1 Microsoft 1 Exchange Server 2025-02-28 8.8 High
Microsoft Exchange Server Spoofing Vulnerability
CVE-2023-36757 1 Microsoft 1 Exchange Server 2025-02-27 8 High
Microsoft Exchange Server Spoofing Vulnerability