PT-2022-5512 · Microsoft · Exchange Server

Chudypb

+2

·

Published

2022-11-08

·

Updated

2024-10-16

·

CVE-2022-41079

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Exchange Server (affected versions not specified)
Description The issue exists due to incorrect handling of user data in Microsoft Exchange Server, allowing a remote attacker to conduct a spoofing attack. This can enable an attacker to influence the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

UI Misrepresentation of Critical Information

Weakness Enumeration

Related Identifiers

BDU:2022-06841
CVE-2022-41079
ZDI-22-1604

Affected Products

Exchange Server