PT-2018-9163 · Microsoft · Exchange Server 2016+2

Cameron Vincent

·

Publicado

2018-03-13

·

Atualizado

2020-08-24

·

CVE-2018-0941

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Microsoft Exchange Server 2016 versions Cumulative Update 7 through Cumulative Update 8
Description: An information disclosure issue exists due to how data is imported. This could allow an attacker to discover sensitive information that should otherwise not be disclosed, particularly if the impacted user is using Microsoft Exchange Outlook Web Access (OWA).
Recommendations: For Microsoft Exchange Server 2016 Cumulative Update 7, update to a version that fixes the information disclosure vulnerability. For Microsoft Exchange Server 2016 Cumulative Update 8, update to a version that fixes the information disclosure vulnerability.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2018-0941

Produtos afetados

Exchange Server
Exchange Outlook Web Access
Exchange Server 2016