Filtered by vendor Microsoft
Subscriptions
Filtered by product Exchange Server
Subscriptions
Total
233 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2005-0563 | 1 Microsoft | 1 Exchange Server | 2025-04-03 | N/A |
Cross-site scripting (XSS) vulnerability in Microsoft Outlook Web Access (OWA) component in Exchange Server 5.5 allows remote attackers to inject arbitrary web script or HTML via an email message with an encoded javascript: URL ("javAsc
ript:") in an IMG tag. | ||||
CVE-2002-0054 | 1 Microsoft | 2 Exchange Server, Windows 2000 | 2025-04-03 | N/A |
SMTP service in (1) Microsoft Windows 2000 and (2) Internet Mail Connector (IMC) in Exchange Server 5.5 does not properly handle responses to NTLM authentication, which allows remote attackers to perform mail relaying via an SMTP AUTH command using null session credentials. | ||||
CVE-2006-0002 | 1 Microsoft | 3 Exchange Server, Office, Outlook | 2025-04-03 | N/A |
Unspecified vulnerability in Microsoft Outlook 2000 through 2003, Exchange 5.0 Server SP2 and 5.5 SP4, Exchange 2000 SP3, and Office allows remote attackers to execute arbitrary code via an e-mail message with a crafted Transport Neutral Encapsulation Format (TNEF) MIME attachment, related to message length validation. | ||||
CVE-2021-31198 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 7.8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2020-0903 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 5.4 Medium |
A cross-site-scripting (XSS) vulnerability exists when Microsoft Exchange Server does not properly sanitize a specially crafted web request to an affected Exchange server, aka 'Microsoft Exchange Server Spoofing Vulnerability'. | ||||
CVE-2023-21745 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 8 High |
Microsoft Exchange Server Spoofing Vulnerability | ||||
CVE-2023-21762 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 8 High |
Microsoft Exchange Server Spoofing Vulnerability | ||||
CVE-2023-21707 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 8.8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-21710 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 7.2 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-28310 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-32031 | 1 Microsoft | 1 Exchange Server | 2025-03-01 | 8.8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2021-31209 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 6.5 Medium |
Microsoft Exchange Server Spoofing Vulnerability | ||||
CVE-2021-31195 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 6.5 Medium |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-35368 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 8.8 High |
Microsoft Exchange Remote Code Execution Vulnerability | ||||
CVE-2023-38185 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 8.8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-21709 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 9.8 Critical |
Microsoft Exchange Server Elevation of Privilege Vulnerability | ||||
CVE-2023-35388 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-38182 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 8 High |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2023-38181 | 1 Microsoft | 1 Exchange Server | 2025-02-28 | 8.8 High |
Microsoft Exchange Server Spoofing Vulnerability | ||||
CVE-2023-36757 | 1 Microsoft | 1 Exchange Server | 2025-02-27 | 8 High |
Microsoft Exchange Server Spoofing Vulnerability |