CVE-2020-17142

CRITICAL

Microsoft Exchange Server - Remote Code Execution

Title source: llm
STIX 2.1

Description

Microsoft Exchange Remote Code Execution Vulnerability

References (2)

Core 2

Scores

CVSS v3 9.1
EPSS 0.0346
EPSS Percentile 87.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Details

Status published
Products (8)
microsoft/exchange_server 2013 cumulative_update_23
microsoft/exchange_server 2016 cumulative_update_17 (2 CPE variants)
microsoft/exchange_server 2019 cumulative_update_6 (2 CPE variants)
Microsoft/Microsoft Exchange Server 2013 Cumulative Update 23 15.00.0 - publication
Microsoft/Microsoft Exchange Server 2016 Cumulative Update 17 15.01.0 - publication
Microsoft/Microsoft Exchange Server 2016 Cumulative Update 18 15.01.0 - publication
Microsoft/Microsoft Exchange Server 2019 Cumulative Update 6 15.02.0 - publication
Microsoft/Microsoft Exchange Server 2019 Cumulative Update 7 15.02.0 - publication
Published Dec 10, 2020
Tracked Since Feb 18, 2026